ASP.NET SignalR XSS Vulnerability
Last Update Date:
13 Dec 2013
Release Date:
11 Dec 2013
4022
Views
RISK: Medium Risk
TYPE: Clients - Productivity Products
An elevation of privilege vulnerability exists in ASP.NET SignalR that could allow an attacker access to resources in the context of the targeted user.
Impact
- Elevation of Privilege
System / Technologies affected
- ASP.NET SignalR 1.1.x
- ASP.NET SignalR 2.0.x
- Microsoft Visual Studio Team Foundation Server 2013
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
- Download location for patches:
http://technet.microsoft.com/en-us/security/bulletin/MS13-103
Vulnerability Identifier
Source
Related Link
Share with