Hmmmmmm... okay, so the issue that is being referred to here is when the login check is handled AFTER that link is displayed? I guess I'm still a bit confused, because I can't understand a) why any such link would be displayed to anyone (or any bot) without them first being logged-in and having the appropriate credentials, and b) how a bot would get past a login/credential check.
Thanks, Matt -----Original Message----- From: Tom Chiverton [mailto:[EMAIL PROTECTED] Sent: Tuesday, October 10, 2006 10:16 AM To: CF-Talk Subject: Re: Strange security problem with googlebot On Tuesday 10 October 2006 15:50, Matt Quackenbush wrote: > Okay, call me silly, but what kind of code exactly can cause this problem? <a href="/site/secure/admin/user.cfm?action=del?id=2436">Delete this user</a> -- Tom Chiverton ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~| Introducing the Fusion Authority Quarterly Update. 80 pages of hard-hitting, up-to-date ColdFusion information by your peers, delivered to your door four times a year. http://www.fusionauthority.com/quarterly Archive: http://www.houseoffusion.com/groups/CF-Talk/message.cfm/messageid:256120 Subscription: http://www.houseoffusion.com/groups/CF-Talk/subscribe.cfm Unsubscribe: http://www.houseoffusion.com/cf_lists/unsubscribe.cfm?user=11502.10531.4

