Microsoft Windows ASP.NET Information Disclosure Vulnerability (CVE-2015-1648)
Publish Date: 21 luglio 2015
Gravità: : Critico
Data notifica: 21 luglio 2015
Descrizione
An information disclosure vulnerability exists in ASP.NET that is caused when ASP.NET improperly handles certain requests on systems that have custom error messages disabled. An attacker who successfully exploited the vulnerability would be able to view parts of a web configuration file, which could expose sensitive information.
Informazioni esposizione:
Apply associated Trend Micro DPI Rules.
Soluzioni
Trend Micro Deep Security DPI Rule Number: 1006629