CVE Vulnerabilities

CVE-2005-1664

Published: May 18, 2005 | Modified: Jul 11, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.4 MEDIUM
AV:N/AC:L/Au:N/C:P/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

The __VIEWSTATE functionality in Microsoft ASP.NET 1.x allows remote attackers to conduct replay attacks to (1) apply a ViewState generated from one view to a different view, (2) reuse ViewState information after the applications state has changed, or (3) use the ViewState to conduct attacks or expose content to third parties.

Affected Software

Name Vendor Start Version End Version
Asp.net Microsoft 1.0 1.0
Asp.net Microsoft 1.1 1.1

References