CVE-2011-1977 Information

Description

The ASP.NET Chart controls in Microsoft .NET Framework 4 and Chart Control for Microsoft .NET Framework 3.5 SP1 do not properly verify functions in URIs which allows remote attackers to read arbitrary files via special characters in a URI in an HTTP request aka \Chart Control Information Disclosure Vulnerability.\

Reference

http://www.us-cert.gov/cas/techalerts/TA11-221A.html https://docs.microsoft.com/en-us/security-updates/securitybulletins/2011/ms11-066 https://oval.cisecurity.org/repository/search/definition/oval3Aorg.mitre.oval3Adef3A12970

Share on: