Ask the Community
Groups
PCI Compliance Audit: Microsoft ASP.NET Denial of Service Vulnerability - Connect IT Community | Kaseya
<main> <article class="userContent"> <p><strong>Problem</strong></p> <p>Our security audit tool is reporting the following vulnerability:</p> <ul><li>Microsoft ASP.NET Denial of Service Vulnerability (KB2659883 and MS11-100)</li> </ul><p><strong>Cause</strong></p> <p>This is due to a Microsoft Security Vulnerability. This was fixed in December 29, 2011.</p> <p><strong>Resolution</strong></p> <p>You must patch your windows server with KB2659883 and MS11-100. Please see: <a rel="nofollow" href="/home/leaving?allowTrusted=1&target=https%3A%2F%2Fsupport.microsoft.com%2Fen-us%2Fhelp%2F2656351%2Fms11-100-description-of-the-security-update-for-the-.net-framework-4-on-windows-xp%2C-windows-server-2003%2C-windows-vista%2C-windows-server-2008%2C-windows-7%2C-and-windows-server-2008-r2-december-29%2C-2011">The Following Microsoft Article</a></p> <p>If you have multiple instances of .NET (3,3.5,4,4.2 etc), you will need the patch per .NET version, please see the article above.</p> <p>Please note this is not a Kaseya-related vulnerability. If your audit continues to show this error, please consult your security audit vendor or Microsoft for more information. </p> <p> </p> <p> </p> </article> </main>