Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Erez Metula

#18722de 53,635
14.3CVSS total
Vulnerabilidades · 2
Média
1
Alta
1
PT-2008-6247
10
2008-11-17
Microsoft · .Net Framework · CVE-2008-5100
**Name of the Vulnerable Software and Affected Versions** Microsoft .NET Framework version 2.0.50727 **Description** The issue concerns the strong name implementation in Microsoft .NET Framework, which relies on the digital signature Public Key Token in the pathname of a DLL file. This makes it easier for attackers to bypass protection mechanisms such as Global Assembly Cache (GAC) and Code Access Security (CAS). **Recommendations** For Microsoft .NET Framework version 2.0.50727, at the moment, there is no information about a newer version that contains a fix for this issue.
PT-2006-4397
4.3
2006-07-12
Clearswift · Clearswift Mimesweeper For Web · CVE-2006-3522
**Name of the Vulnerable Software and Affected Versions** Clearswift MIMEsweeper for Web versions prior to 5.1.15 Hotfix **Description** A cross-site scripting (XSS) issue allows remote attackers to inject arbitrary web script or HTML via the URL. This script or HTML is reflected back in an error message when attempting to access a blocked website. **Recommendations** For versions prior to 5.1.15 Hotfix, update to version 5.1.15 Hotfix or later to resolve the issue. As a temporary workaround, consider restricting access to blocked websites to minimize the risk of exploitation.