<?xml version="1.0"?>
<rss version="2.0">
<channel>
<title>Thycotic Community - Secret Server - Asp.Net Vulnerability - Secret Server Security Patch Required - Messages</title>
<link>http://www.thycotic.com/forums/messages.aspx?TopicID=299</link>
<description>Thycotic Community - Secret Server - Asp.Net Vulnerability - Secret Server Security Patch Required - Messages</description>
<language>en-us</language>
<docs>http://blogs.law.harvard.edu/tech/rss</docs>
<generator>Jitbit AspNetForum</generator>
<pubDate>Thu, 23 Sep 2010 06:20:30 GMT</pubDate>
<lastBuildDate>Thu, 23 Sep 2010 06:20:30 GMT</lastBuildDate>
<item>
<link>http://www.thycotic.com/forums/messages.aspx?TopicID=299</link>
<title>Message from Scott</title>
<description><![CDATA[Adam,<br/><br/>At present, there is not, but we are working towards implementing something like that soon. There should be a forum post announcing this feature in the not-too-distant future.<br/><br/>Scott<br/>Thycotic Software]]></description>
<pubDate>Thu, 23 Sep 2010 06:20:30 GMT</pubDate>
</item>
<item>
<link>http://www.thycotic.com/forums/messages.aspx?TopicID=299</link>
<title>Message from Adam D</title>
<description><![CDATA[Is there a mailing list for these type of critical updates? I did nto receive anything.]]></description>
<pubDate>Wed, 22 Sep 2010 10:56:53 GMT</pubDate>
</item>
<item>
<link>http://www.thycotic.com/forums/messages.aspx?TopicID=299</link>
<title>Message from Tucker</title>
<description><![CDATA[The Security patch has been incorporated into the 7.1.000001 Release that is now live. <br/><br/>If you update you will not need to apply the patch manually.]]></description>
<pubDate>Mon, 20 Sep 2010 12:34:22 GMT</pubDate>
</item>
<item>
<link>http://www.thycotic.com/forums/messages.aspx?TopicID=299</link>
<title>Message from Tucker</title>
<description><![CDATA[Asp.Net Vulnerability - Security Patch<br/><br/>A vulnerability in Microsoft ASP.Net framework is a immediate security concern for  Secret Server customers. The vulnerability allows hackers to access the file system as well as potentially retrieve encrypted ViewState data. <br/><br/>For more details on this vulnerability see the following Microsoft Security Advisory:  &lt;a href="http://www.microsoft.com/technet/security/advisory/2416728.mspx"&gt;http://www.microsoft.com/technet/security/advisory/2416728.mspx&lt;/a&gt;<br/><br/>Secret Server Patch<br/><br/>A Secret Server patch is available with more information in this Knowledge Base article:<br/>&lt;a href="http://support.thycotic.com/KB/a106/aspnet-vulnerability-security-patch-9202010.aspx?KBSearchID=6051"&gt;http://support.thycotic.com/KB/a106/aspnet-vulnerability-security-patch-9202010.aspx?KBSearchID=6051&lt;/a&gt;<br/><br/>Note: Secret Server Online has already been patched. <br/>]]></description>
<pubDate>Mon, 20 Sep 2010 09:15:35 GMT</pubDate>
</item>
</channel>
</rss>
