Last week, we've blogged about a high-risk
security vulnerability in all versions of ASP.NET.
Today, Microsoft released a security update.
We recommend installing the update as soon as possible on your web-servers. The
work-around we have published last week is not longer needed after completing the
update.
Detailed information on how to obtain and install the updates and frequently asked
questions can be found
ScottGu's Blog.