|30 Apr 2010||#1|
MS SharePoint bug exposes credentials, sensitive data.
Microsoft says it's investigating a security flaw in older versions of its SharePoint Server product that an independent researcher says can easily expose sensitive data and user authentication credentials.
"The vulnerability exists due to failure in the '/_layouts/help.aspx' script to properly sanitize user-supplied input in 'cid0' variable," the advisory states. "Successful exploitation of this vulnerability could result in a compromise of the application, theft of cookie-based authentication credentials, disclosure or modification of sensitive data."
Microsoft SharePoint bug exposes credentials, sensitive data ? The Register
|My System Specs|
|Similar help and support threads for2: MS SharePoint bug exposes credentials, sensitive data.|
|Security hole exposes Twitter accounts to hacking||Security News|
|Doctor Web exposes 550,000 strong Mac botnet||Security News|
|Flash drives dangerously hard to purge of sensitive data||News|
|Security gone awry: IE 8 XSS filter exposes sites......||Security News|
|Protecting Sensitive Data with AD RMS.||Chillout Room|
|Kaspersky breach exposes sensitive database, hacker claims||System Security|
© Designer Media Ltd
All times are GMT -5. The time now is 03:35 AM.