Security Zone Alert: ClusterCATS Appends Stale Query String to URL Line During HTML Redirection

 
May 01, 2000

Allaire Security Bulletin(ASB00-12): Allaire Knowledge Base Article 15607 notes that "ClusterCATS may append stale query string arguments to a URL when performing a HTTP redirect. This can be a security problem if the stale information includes user names and passwords." A patch is now available to eliminate this security vulnerability.

Allaire Security Bulletin (ASB00-12)

Add a Comment
(If you subscribe, any new posts to this thread will be sent to your email address.)
  
Privacy | FAQ | Site Map | About | Guidelines | Contact | Advertising | What is ColdFusion?
House of Fusion | ColdFusion Jobs | Blog of Fusion | AHP Hosting