This script is Copyright (C) 2012 Tenable Network Security, Inc.
The remote SuSE 10 host is missing a security-related patch.
The FORMS authentication methods of mono ASP.net implementation were
vulnerable to a padding oracle attack as described in CVE-2010-3332,
as they did encryption after checksum.
This update changes the method to checksum after encryption to avoid
See also :
Apply ZYPP patch number 8001.
Risk factor :
Medium / CVSS Base Score : 5.0