Security Advisory

CVE-2004-0847

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2004-10-06 04:00:00
Last updated 2024-08-08 00:31:47
Assigner mitre
State PUBLISHED

Description

The Microsoft .NET forms authentication capability for ASP.NET allows remote attackers to bypass authentication for .aspx files in restricted directories via a request containing a (1) "" (backslash) or (2) "%5C" (encoded backslash), aka "Path Validation Vulnerability."