Microsoft Windows ASP.NET Information Disclosure Vulnerability (CVE-2015-1648)
Data de publicação: 21 julho 2015
Schweregrad: : Crítico
Data do informe: 21 julho 2015
Descrição
An information disclosure vulnerability exists in ASP.NET that is caused when ASP.NET improperly handles certain requests on systems that have custom error messages disabled. An attacker who successfully exploited the vulnerability would be able to view parts of a web configuration file, which could expose sensitive information.
Exposição das informações
Apply associated Trend Micro DPI Rules.
Solução
Trend Micro Deep Security DPI Rule Number: 1006629