Microsoft Net Framework 4.0 V 30319 Vulnerabilities
You can suppress the misleading X-AspNet-Version header in your web.config to stop scanners from flagging it:
A fully updated Windows 10 or Server 2016 machine with all .NET 4.x security patches may still show v4.0.30319 for applications compiled against 4.0, but the actual CLR binary ( clr.dll ) has been hotpatched. Confusion between file version and runtime version is a major source of false negative security scans. microsoft net framework 4.0 v 30319 vulnerabilities