Skip to main content

ASP.NET SignalR XSS Vulnerability

Last Update Date: 13 Dec 2013 Release Date: 11 Dec 2013 3458 Views

RISK: Medium Risk

TYPE: Clients - Productivity Products

TYPE: Productivity Products

An elevation of privilege vulnerability exists in ASP.NET SignalR that could allow an attacker access to resources in the context of the targeted user.


Impact

  • Elevation of Privilege

System / Technologies affected

  • ASP.NET SignalR 1.1.x
  • ASP.NET SignalR 2.0.x
  • Microsoft Visual Studio Team Foundation Server 2013

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.


Vulnerability Identifier


Source


Related Link