PT-2006-3833 · Lanap · Lanap Botdetect Aps.Net Captcha

Graham Murphy

+1

·

Publicado

2006-06-23

·

Atualizado

2018-10-18

·

CVE-2006-2918

CVSS v2.0

5.0

Média

VetorAV:N/AC:L/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Lanap BotDetect APS.NET CAPTCHA component versions prior to 1.5.4.0
Description The issue allows remote attackers to conduct automated attacks by replaying the ViewState for a known number, as the UUID and hash for a CAPTCHA are stored in the ViewState of a page.
Recommendations For versions prior to 1.5.4.0, update to version 1.5.4.0 or later to resolve the issue.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2006-2918

Produtos afetados

Lanap Botdetect Aps.Net Captcha