Allaire Security Bulletin (ASB00-21): O'Reilly Has Patch Available for Buffer Overrun in O'Reilly Website Pro 2.4 webfind.exe
The Cerberus Security Team has released an advisory about a security issue in the O'Reilly Website Pro web server which could allow a malicious user to execute arbitrary code. "This is not a problem with ColdFusion Server itself, but it is an issue that can affect ColdFusion users. Allaire recommends that customers see O'Reilly's support options for further information about this issue.
Allaire Security Bulletin (ASB00-21)