Allaire Security Bulletin (ASB00- 27) : JRun 3.0: Patch Available for Extra Leading Slash Security Issue

 
Oct 23, 2000
Under certain circumstances, the included JRun 3.0 http server may improperly handle leading path-specifying characters and a deliberately malformed URI will allow browser access to otherwise-forbidden JRun 3.0 resources. Here's the patch:

Allaire Security Bulletin (ASB00-27) (Allaire Security Bulletin)


Privacy | FAQ | Site Map | About | Guidelines | Contact | Advertising | What is ColdFusion?
House of Fusion | ColdFusion Jobs | Blog of Fusion | AHP Hosting