ASPRunner 2.4 allows remote attackers to gain sensitive information via (1) hidden form fields or (2) error messages.
https://exchange.xforce.ibmcloud.com/vulnerabilities/16800
http://www.securityfocus.com/bid/10799
http://securitytracker.com/id?1010777