Windows Identity Foundation (WIF): A Potentially Dangerous Request.Form Value Was Detected from the Client (wresult="<t:RequestSecurityTo...")

Revision Creation Date Revision Author
[Current Revision] 29 Feb 2012 11:14 AM by: Quenby Mitchell
[Revision #2] 16 Feb 2011 3:18 PM by: Ed Price - MSFT Revert
[Revision #1] 4 Nov 2010 12:26 PM by: Adam Conkle - MSFT Revert
[Original] 4 Nov 2010 12:13 PM by: Adam Conkle - MSFT Revert
Page 1 of 1 (3 items)
Sort by: Published Date | Most Recent | Most Useful
Comments
  • Quenby Mitchell edited Revision 2. Comment: Added !String.IsNullOrEmpty( collectionKey )  to test for a possible null reference exception. Changed CreateFromFormPost to CreateFromNameValueCollection to avoid a possible stack overflow exception if the context.Request implementation is Microsoft.Web.Infrastructure.DynamicValidationHelper.LazilyEvaluatedNameObjectEntry. Both of these scenarios have occurred on our production machines.

  • Ed Price MSFT edited Revision 1. Comment: Updated title.

Page 1 of 1 (2 items)