Home Dashboard Directory Help
Search

Exploit found on microsoft support portal by Ronan__


Status: 

Active


2
0
Sign in
to vote
Type: Suggestion
ID: 799738
Opened: 9/5/2013 1:02:11 AM
Access Restriction: Public
0
Workaround(s)
view

Description

Hi,
I find the exploit on microsoft support portal that is http://support.microsoft.com, where i can find
1. ASP.NET Oracle Padding.
2. HTML forms without CSRF Protection on many pages.
3. Insecure clientaccesspolicy.xml file.
4. Insecure transition from HTTP to HTTPS in form post

Thanks,
Sanjib Kuikel
Kathmandu, Nepal
Details
Sign in to post a comment.
Sign in to post a workaround.