Microsoft .Net Framework 2.0 - Multiple Null Byte Injection Vulnerabilities

Related Vulnerabilities: CVE-2007-0042  
Publish Date: 06 Jul 2007
Author: Paul Craig
                							

                source: http://www.securityfocus.com/bid/24791/info

Microsoft .NET Framework is prone to multiple NULL-byte injection vulnerabilities because it fails to adequately sanitize user-supplied data.

An attacker can exploit these issues to access sensitive information that may aid in further attacks; other attacks are also possible. 

http://www.example.com/[path]/somescript.asp%00