Vulnerability Details CVE-2005-1664
The __VIEWSTATE functionality in Microsoft ASP.NET 1.x allows remote attackers to conduct replay attacks to (1) apply a ViewState generated from one view to a different view, (2) reuse ViewState information after the application's state has changed, or (3) use the ViewState to conduct attacks or expose content to third parties.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.188
EPSS Ranking 97.0%
CVSS Severity
CVSS v2 Score 6.4
Products affected by CVE-2005-1664
-
cpe:2.3:a:microsoft:asp.net:1.0
-
cpe:2.3:a:microsoft:asp.net:1.1