Microsoft ASP.Net 1.1 allows remote attackers to bypass the Cross-Site Scripting (XSS) and Script Injection protection feature via a null character in the beginning of a tag name.
References
Link | Resource |
---|---|
http://marc.info/?l=bugtraq&m=106304326916062&w=2 |
Configurations
History
No history.
Information
Published : 2003-09-22 04:00
Updated : 2024-02-04 16:31
NVD link : CVE-2003-0768
Mitre link : CVE-2003-0768
CVE.ORG link : CVE-2003-0768
JSON object : View
Products Affected
microsoft
- asp.net
CWE