| http://www.w3.org/ns/prov#value | - - The URLscan tool, if deployed using the default ruleset for Commerce Server, would make it difficult if not impossible for an attacker to exploit the vulnerability to run code, by significantly limiting the types of data that could be included in an URL. It would, however, still be possible to conduct denial of service attacks. - Best practices for web site design can prevent this vulnerability
|