Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Mono Unicode Character Conversion Multiple Cross-Site Scripting Vulnerabilities

It is reported that Mono is prone to various cross-site scripting attacks. These issues result from insufficient sanitization of user-supplied data and arise when Mono converts Unicode characters ranging from U+ff00-U+ff60 to ASCII.

Mono 1.0.5 is reported vulnerable, however, other versions may be affected as well.

This issue is related to BID 12574 (Microsoft ASP.NET Unicode Character Conversion Multiple Cross-Site Scripting Vulnerabilities).







 

Privacy Statement
Copyright 2009, SecurityFocus