CVE-2010-1459
Summary
| CVE | CVE-2010-1459 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2010-05-27 19:00:00 UTC |
| Updated | 2010-09-09 05:41:00 UTC |
| Description | The default configuration of ASP.NET in Mono before 2.6.4 has a value of FALSE for the EnableViewStateMac property, which allows remote attackers to conduct cross-site scripting (XSS) attacks, as demonstrated by the __VIEWSTATE parameter to 2.0/menu/menu1.aspx in the XSP sample project. |
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|
| Application |
Mono |
Mono |
1.0 |
All |
All |
All |
| Application |
Mono |
Mono |
1.0.1 |
All |
All |
All |
| Application |
Mono |
Mono |
1.0.2 |
All |
All |
All |
| Application |
Mono |
Mono |
1.0.4 |
All |
All |
All |
| Application |
Mono |
Mono |
1.0.5 |
All |
All |
All |
| Application |
Mono |
Mono |
1.0.6 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.1 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.10 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.10.1 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.11 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.12 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.12.1 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.13 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.13.2 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.13.4 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.13.5 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.13.6 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.13.7 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.13.8 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.13.8.1 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.14 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.15 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.16 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.16.1 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.17 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.17.1 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.17.2 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.18 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.2 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.3 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.4 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.5 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.6 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.7 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.8 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.8.1 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.8.3 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.9 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.9.1 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.9.2 |
All |
All |
All |
| Application |
Mono |
Mono |
1.2 |
All |
All |
All |
| Application |
Mono |
Mono |
1.2.1 |
All |
All |
All |
| Application |
Mono |
Mono |
1.2.2 |
All |
All |
All |
| Application |
Mono |
Mono |
1.2.2.1 |
All |
All |
All |
| Application |
Mono |
Mono |
1.2.3 |
All |
All |
All |
| Application |
Mono |
Mono |
1.2.3.1 |
All |
All |
All |
| Application |
Mono |
Mono |
1.2.4 |
All |
All |
All |
| Application |
Mono |
Mono |
1.2.5 |
All |
All |
All |
| Application |
Mono |
Mono |
1.2.5.1 |
All |
All |
All |
| Application |
Mono |
Mono |
1.2.5.2 |
All |
All |
All |
| Application |
Mono |
Mono |
1.2.6 |
All |
All |
All |
| Application |
Mono |
Mono |
1.9 |
All |
All |
All |
| Application |
Mono |
Mono |
1.9.1 |
All |
All |
All |
| Application |
Mono |
Mono |
2.0 |
All |
All |
All |
| Application |
Mono |
Mono |
2.0.1 |
All |
All |
All |
| Application |
Mono |
Mono |
2.2 |
All |
All |
All |
| Application |
Mono |
Mono |
2.4 |
All |
All |
All |
| Application |
Mono |
Mono |
2.4.2 |
All |
All |
All |
| Application |
Mono |
Mono |
2.4.2.1 |
All |
All |
All |
| Application |
Mono |
Mono |
2.4.2.2 |
All |
All |
All |
| Application |
Mono |
Mono |
2.4.2.3 |
All |
All |
All |
| Application |
Mono |
Mono |
2.4.3 |
All |
All |
All |
| Application |
Mono |
Mono |
1.0 |
All |
All |
All |
| Application |
Mono |
Mono |
1.0.1 |
All |
All |
All |
| Application |
Mono |
Mono |
1.0.2 |
All |
All |
All |
| Application |
Mono |
Mono |
1.0.4 |
All |
All |
All |
| Application |
Mono |
Mono |
1.0.5 |
All |
All |
All |
| Application |
Mono |
Mono |
1.0.6 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.1 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.10 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.10.1 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.11 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.12 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.12.1 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.13 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.13.2 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.13.4 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.13.5 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.13.6 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.13.7 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.13.8 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.13.8.1 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.14 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.15 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.16 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.16.1 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.17 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.17.1 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.17.2 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.18 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.2 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.3 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.4 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.5 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.6 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.7 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.8 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.8.1 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.8.3 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.9 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.9.1 |
All |
All |
All |
| Application |
Mono |
Mono |
1.1.9.2 |
All |
All |
All |
| Application |
Mono |
Mono |
1.2 |
All |
All |
All |
| Application |
Mono |
Mono |
1.2.1 |
All |
All |
All |
| Application |
Mono |
Mono |
1.2.2 |
All |
All |
All |
| Application |
Mono |
Mono |
1.2.2.1 |
All |
All |
All |
| Application |
Mono |
Mono |
1.2.3 |
All |
All |
All |
| Application |
Mono |
Mono |
1.2.3.1 |
All |
All |
All |
| Application |
Mono |
Mono |
1.2.4 |
All |
All |
All |
| Application |
Mono |
Mono |
1.2.5 |
All |
All |
All |
| Application |
Mono |
Mono |
1.2.5.1 |
All |
All |
All |
| Application |
Mono |
Mono |
1.2.5.2 |
All |
All |
All |
| Application |
Mono |
Mono |
1.2.6 |
All |
All |
All |
| Application |
Mono |
Mono |
1.9 |
All |
All |
All |
| Application |
Mono |
Mono |
1.9.1 |
All |
All |
All |
| Application |
Mono |
Mono |
2.0 |
All |
All |
All |
| Application |
Mono |
Mono |
2.0.1 |
All |
All |
All |
| Application |
Mono |
Mono |
2.2 |
All |
All |
All |
| Application |
Mono |
Mono |
2.4 |
All |
All |
All |
| Application |
Mono |
Mono |
2.4.2 |
All |
All |
All |
| Application |
Mono |
Mono |
2.4.2.1 |
All |
All |
All |
| Application |
Mono |
Mono |
2.4.2.2 |
All |
All |
All |
| Application |
Mono |
Mono |
2.4.2.3 |
All |
All |
All |
| Application |
Mono |
Mono |
2.4.3 |
All |
All |
All |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 996773 DotNet (Nuget) Security Update for mono (GHSA-g5c6-w479-93xm)