1
 min read

Potential IP Addresses Found in the Viewstate

Potential IP addresses were found to be serialized in the ViewState field.

Summary

Potential IP addresses were found to be serialized in the ViewState field.

An attacker can study the application's state management logic for possible vulnerabilities, and if your application stores application-critical information in the ViewState (e.g., IP addresses), it will also be revealed.

Solution

Reduce the chance of someone intercepting the information stored in the ViewState by encrypting it.

Risk

Medium

References

Scan and protect your web application from hackers

Run our automated penetration testing and vulnerability assessment to protect your web application from hackers.

Thank you for registering
Oops! Something went wrong.