﻿<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:trackback="http://madskills.com/public/xml/rss/module/trackback/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/"><channel><title>博客园-思想的思想-最新评论</title><link>http://www.cnblogs.com/lilei/CommentsRSS.aspx</link><description>很久很久以前，谎言和真实在河边洗澡，谎言先洗好，穿了真实的衣服离开， 真实却不肯穿谎言的衣服。后来，在人们的眼里，只有穿着真实衣服的谎言，却很难接受赤裸裸的真实</description><language>zh-cn</language><pubDate>Wed, 29 Feb 2012 17:04:24 GMT</pubDate><lastBuildDate>Wed, 29 Feb 2012 17:04:24 GMT</lastBuildDate><generator>cnblogs</generator><item><title>Re:微软官方SQL Server 2008正式中文试用版下载</title><link>http://www.cnblogs.com/lilei/archive/2011/07/09/1263604.html#2146773</link><dc:creator>john23.net</dc:creator><author>john23.net</author><pubDate>Sat, 09 Jul 2011 02:22:40 GMT</pubDate><guid>http://www.cnblogs.com/lilei/archive/2011/07/09/1263604.html#2146773</guid><description><![CDATA[顶下<br><br><div align=right><a style="text-decoration:none;" href="http://www.cnblogs.com/lilei/" target="_blank">john23.net</a> 2011-07-09 10:22 <a href="http://www.cnblogs.com/lilei/archive/2011/07/09/1263604.html#2146773#Feedback" target="_blank" style="text-decoration:none;">发表评论</a></div>]]></description></item><item><title>Re:微软表示ASP.NET高危漏洞将波及MVC以及SharePoint</title><link>http://www.cnblogs.com/lilei/archive/2010/09/21/1832568.html#1922205</link><dc:creator>Johnses</dc:creator><author>Johnses</author><pubDate>Tue, 21 Sep 2010 06:32:42 GMT</pubDate><guid>http://www.cnblogs.com/lilei/archive/2010/09/21/1832568.html#1922205</guid><description><![CDATA[自查，怎么个自查？<br><br><div align=right><a style="text-decoration:none;" href="http://www.cnblogs.com/lilei/" target="_blank">Johnses</a> 2010-09-21 14:32 <a href="http://www.cnblogs.com/lilei/archive/2010/09/21/1832568.html#1922205#Feedback" target="_blank" style="text-decoration:none;">发表评论</a></div>]]></description></item><item><title>Re:ASP.NET 惊爆新安全漏洞 攻击者可访问任意文件</title><link>http://www.cnblogs.com/lilei/archive/2010/09/19/1830427.html#1920682</link><dc:creator>4lert</dc:creator><author>4lert</author><pubDate>Sun, 19 Sep 2010 07:56:12 GMT</pubDate><guid>http://www.cnblogs.com/lilei/archive/2010/09/19/1830427.html#1920682</guid><description><![CDATA[asp.net漏洞-POET vs ASP.NET: DotNetNuke 利用视频http://v.youku.com/v_show/id_XMjA3NjI3NjI0.html<br><br><div align=right><a style="text-decoration:none;" href="http://www.cnblogs.com/lilei/" target="_blank">4lert</a> 2010-09-19 15:56 <a href="http://www.cnblogs.com/lilei/archive/2010/09/19/1830427.html#1920682#Feedback" target="_blank" style="text-decoration:none;">发表评论</a></div>]]></description></item><item><title>Re:ASP.NET 惊爆新安全漏洞 攻击者可访问任意文件</title><link>http://www.cnblogs.com/lilei/archive/2010/09/19/1830427.html#1920461</link><dc:creator>小 强</dc:creator><author>小 强</author><pubDate>Sun, 19 Sep 2010 03:55:42 GMT</pubDate><guid>http://www.cnblogs.com/lilei/archive/2010/09/19/1830427.html#1920461</guid><description><![CDATA[[quote]bidaas：早就知道了ASP.NET的这个篡改功能了，还以为是ASP.NET自带的功能，不是漏洞，并且利用这个功能让客户自己用http方式更新bin目录和web.config等文件[/quote]

没明白什么意思，能否详细说说<br><br><div align=right><a style="text-decoration:none;" href="http://www.cnblogs.com/lilei/" target="_blank">小 强</a> 2010-09-19 11:55 <a href="http://www.cnblogs.com/lilei/archive/2010/09/19/1830427.html#1920461#Feedback" target="_blank" style="text-decoration:none;">发表评论</a></div>]]></description></item><item><title>Re:ASP.NET 惊爆新安全漏洞 攻击者可访问任意文件</title><link>http://www.cnblogs.com/lilei/archive/2010/09/19/1830427.html#1920439</link><dc:creator>Icyflash</dc:creator><author>Icyflash</author><pubDate>Sun, 19 Sep 2010 03:31:36 GMT</pubDate><guid>http://www.cnblogs.com/lilei/archive/2010/09/19/1830427.html#1920439</guid><description><![CDATA[已经好几天的事了

http://www.theinquirer.net/inquirer/news/1732956/security-researchers-destroy-microsoft-aspnet-security<br><br><div align=right><a style="text-decoration:none;" href="http://www.cnblogs.com/lilei/" target="_blank">Icyflash</a> 2010-09-19 11:31 <a href="http://www.cnblogs.com/lilei/archive/2010/09/19/1830427.html#1920439#Feedback" target="_blank" style="text-decoration:none;">发表评论</a></div>]]></description></item><item><title>Re:ASP.NET 惊爆新安全漏洞 攻击者可访问任意文件</title><link>http://www.cnblogs.com/lilei/archive/2010/09/19/1830427.html#1920309</link><dc:creator>李永京</dc:creator><author>李永京</author><pubDate>Sun, 19 Sep 2010 01:55:55 GMT</pubDate><guid>http://www.cnblogs.com/lilei/archive/2010/09/19/1830427.html#1920309</guid><description><![CDATA[但是ScottGu给出了一个临时的解决方案，大家可以参考一下：http://sinaurl.cn/h9XSe6<br><br><div align=right><a style="text-decoration:none;" href="http://www.cnblogs.com/lilei/" target="_blank">李永京</a> 2010-09-19 09:55 <a href="http://www.cnblogs.com/lilei/archive/2010/09/19/1830427.html#1920309#Feedback" target="_blank" style="text-decoration:none;">发表评论</a></div>]]></description></item><item><title>Re:ASP.NET 惊爆新安全漏洞 攻击者可访问任意文件</title><link>http://www.cnblogs.com/lilei/archive/2010/09/19/1830427.html#1920305</link><dc:creator>菜阿彬</dc:creator><author>菜阿彬</author><pubDate>Sun, 19 Sep 2010 01:51:34 GMT</pubDate><guid>http://www.cnblogs.com/lilei/archive/2010/09/19/1830427.html#1920305</guid><description><![CDATA[[quote]技术,趋势：
此漏洞存在于ASP.NET所有已发布的版本中, 其影响程度不容小视. 目前尚无补丁发布. 请广大开发和维护人员加强防范...
--------
真服了微软的高管了，[b]自已都没解决的技术问题，就这么抛给广大开发和维护人员[/b]。这不是要人的命么。[/quote]
难道要像资金矿业一样，发现问题要维稳瞒报吗？<br><br><div align=right><a style="text-decoration:none;" href="http://www.cnblogs.com/lilei/" target="_blank">菜阿彬</a> 2010-09-19 09:51 <a href="http://www.cnblogs.com/lilei/archive/2010/09/19/1830427.html#1920305#Feedback" target="_blank" style="text-decoration:none;">发表评论</a></div>]]></description></item><item><title>Re:ASP.NET 惊爆新安全漏洞 攻击者可访问任意文件</title><link>http://www.cnblogs.com/lilei/archive/2010/09/19/1830427.html#1920296</link><dc:creator>技术,趋势</dc:creator><author>技术,趋势</author><pubDate>Sun, 19 Sep 2010 01:42:30 GMT</pubDate><guid>http://www.cnblogs.com/lilei/archive/2010/09/19/1830427.html#1920296</guid><description><![CDATA[此漏洞存在于ASP.NET所有已发布的版本中, 其影响程度不容小视. 目前尚无补丁发布. 请广大开发和维护人员加强防范...
--------
真服了微软的高管了，[b]自已都没解决的技术问题，就这么抛给广大开发和维护人员[/b]。这不是要人的命么。<br><br><div align=right><a style="text-decoration:none;" href="http://www.cnblogs.com/lilei/" target="_blank">技术,趋势</a> 2010-09-19 09:42 <a href="http://www.cnblogs.com/lilei/archive/2010/09/19/1830427.html#1920296#Feedback" target="_blank" style="text-decoration:none;">发表评论</a></div>]]></description></item><item><title>Re:ASP.NET 惊爆新安全漏洞 攻击者可访问任意文件</title><link>http://www.cnblogs.com/lilei/archive/2010/09/19/1830427.html#1920292</link><dc:creator>技术,趋势</dc:creator><author>技术,趋势</author><pubDate>Sun, 19 Sep 2010 01:40:37 GMT</pubDate><guid>http://www.cnblogs.com/lilei/archive/2010/09/19/1830427.html#1920292</guid><description><![CDATA[好大个洞，MS真是祸不单行啊。<br><br><div align=right><a style="text-decoration:none;" href="http://www.cnblogs.com/lilei/" target="_blank">技术,趋势</a> 2010-09-19 09:40 <a href="http://www.cnblogs.com/lilei/archive/2010/09/19/1830427.html#1920292#Feedback" target="_blank" style="text-decoration:none;">发表评论</a></div>]]></description></item><item><title>Re:ASP.NET 惊爆新安全漏洞 攻击者可访问任意文件</title><link>http://www.cnblogs.com/lilei/archive/2010/09/19/1830427.html#1920268</link><dc:creator>超级奶崽</dc:creator><author>超级奶崽</author><pubDate>Sun, 19 Sep 2010 01:22:16 GMT</pubDate><guid>http://www.cnblogs.com/lilei/archive/2010/09/19/1830427.html#1920268</guid><description><![CDATA[知道这个漏洞是如何使用的才能更好的想到对策嘛<br><br><div align=right><a style="text-decoration:none;" href="http://www.cnblogs.com/lilei/" target="_blank">超级奶崽</a> 2010-09-19 09:22 <a href="http://www.cnblogs.com/lilei/archive/2010/09/19/1830427.html#1920268#Feedback" target="_blank" style="text-decoration:none;">发表评论</a></div>]]></description></item></channel></rss>
