Their style of coddling doesn't allow to broke site. Most of time web-site
can be easily killed if it has some SQL requests inside *.cfm pages and they
are using SQL Server (that it is pretty obvious if they have IIS). In this
case small investigation about name of tables and wops... All database is
killed. This is the way about creation of myth about "cool hackers".
Reality is - stupid admins and dumb programmers.

Regards


----- Original Message -----
From: "Allan Pichler" <[EMAIL PROTECTED]>
To: "CF-Talk" <[EMAIL PROTECTED]>
Sent: Tuesday, December 19, 2000 12:11 PM
Subject: RE: Cool CF site - webos.org


> well ... all power to you then ... but they did fix it that day ....
> obviously Allaire has morons employed too!
>
> :) Thanks though for checking!
>
> Allan
>
> -----Original Message-----
> From: Gena [mailto:[EMAIL PROTECTED]]
> Sent: Thursday, November 09, 2000 5:06 PM
> To: CF-Talk
> Subject: Re: Cool CF site - webos.org
>
>
> You are mistaken. beta.allaire.com is open for investigation :)))
>
> Regards
>
>
> ----- Original Message -----
> From: "Allan Pichler" <[EMAIL PROTECTED]>
> To: "CF-Talk" <[EMAIL PROTECTED]>
> Sent: Tuesday, December 19, 2000 11:50 AM
> Subject: RE: Cool CF site - webos.org
>
>
> > Well that probably true .... i notified Allaire i while back that they
> > forgot it on beta.allaire.com, and ... surprise surprise ...... it was
> fixed
> > in a matter of minutes! So i guess some people care after all. I can
> > obviously only speak for myself, but i wouldn't like anyone to get their
> > hands on my code!
> >
> > -Allan
> >
> > -----Original Message-----
> > From: Gena [mailto:[EMAIL PROTECTED]]
> > Sent: Thursday, November 09, 2000 4:50 PM
> > To: CF-Talk
> > Subject: Re: Cool CF site - webos.org
> >
> >
> > > > Tee hee, the old +.htr bug :)
> > >
> > > Yep. And just so nobody takes it lightly, it even affects IISv5 on
Win2K
> > > Advance Server SP1 with CF4.5.1 and all the patches. Everybody: DELETE
> > YOUR
> > > ..HTR EXTENSION MAPPING FROM YOUR GLOBAL WEB PROPERTIES NOW!
> >
> > It looks like everybody don't care about this. I sent a lot of messages
to
> > all sites have this security hole but... didn't get any answer. Also
noone
> > has changed their IIS setup.
> >
> > Regards
> >
>
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
        Structure your ColdFusion code with Fusebox. Get the official book at 
http://www.fusionauthority.com/bkinfo.cfm

Archives: http://www.mail-archive.com/[email protected]/
Unsubscribe: http://www.houseoffusion.com/index.cfm?sidebar=lists

Reply via email to