AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2011-1068

LOW · CVSS 2.6 EPSS 9.60%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2011-02-23 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2011-1068
Severity
LOW
CVSS
2.6
EPSS
9.60%
Microsoft Windows

Original NVD Description

Microsoft Windows Azure Software Development Kit (SDK) 1.3.x before 1.3.20121.1237, when Full IIS and a Web Role are used with an ASP.NET application, does not properly support the use of cookies for maintaining state, which allows remote attackers to obtain potentially sensitive information by reading an encrypted cookie and performing unspecified other steps.