Rule Release for Today, Thursday September 23rd, 2010
Full article52 words · extracted from blog.talosintelligence.com · click to collapse
Thursday, September 23, 2010 15:23
Microsoft .NET Framework Information Disclosure (CVE-2010-3332):
The Microsoft .NET Framework discloses enough information in error responses that an attacker is able to decrypt and modify encrypted data. The attacker is also able to forge cookies and obtain application files via an Oracle padding attack.
Get some: http://www.snort.org/vrt/advisories/2010/09/23/vrt-rules-2010-09-23.html
Text extracted automatically; images, tables and formatting may be missing. Original: https://blog.talosintelligence.com/rule-release-for-today-thursday_23/