Tally List : mailing list management, archiving, and analysis
click for archive home
 
Archive of:
CF-Server
Cold Fusion Server Tech
 
home
24 hour view
quick stats
weekly updates
 
all tallylists
corporate solutions
archive your favorite
help / feedback


Search the Tallylist search by keyword:

About Cold Fusion :
product's home
product's list home
 
  Archived TallyList / CF-Server: 
Subject: Re: viewing source code
Hassan Khawaja (8p/+0r)     Posted: Friday 04 May 2001
This post: 70 views, +0 rating

I think it's the +.htr bug which allows people to see the CF source code. Try putting +.htr at the end of any .cfm page on your site and viewing the source. e.g. http://www.site.com/index.cfm+.htr

--- Priscilla Yamin <pyamin@valencia.cc.fl.us> wrote: > This is a multi-part message in MIME format. > > ------=_NextPart_000_0058_01C0D3EA.088CB120 > Content-Type: text/plain; > charset="iso-8859-1" > Content-Transfer-Encoding: quoted-printable > > Someone sent me an email that said our IIS server > has a well known bug = > that allows people to view the CF source code.=20 > > Is anyone familiar with this? And is this something > to be concerned = > about? > > > > ------=_NextPart_000_0058_01C0D3EA.088CB120 > Content-Type: text/html; > charset="iso-8859-1" > Content-Transfer-Encoding: quoted-printable > > <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 > Transitional//EN"> > <HTML><HEAD> > <META http-equiv=3DContent-Type > content=3D"text/html; = > charset=3Diso-8859-1"> > <META content=3D"MSHTML 6.00.2462.0" > name=3DGENERATOR> > <STYLE></STYLE> > </HEAD> > <BODY bgColor=3D#ffffff> > <DIV><FONT face=3DArial size=3D2><FONT face=3D"Times > New Roman" = > size=3D3>Someone sent me=20 > an email that said our IIS server has a well known > bug that allows = > people to=20 > view the CF source code. <BR><BR>Is anyone familiar > with this? And is = > this=20 > something to be concerned = > about?</FONT><BR><BR></FONT></DIV></BODY></HTML> > > ------=_NextPart_000_0058_01C0D3EA.088CB120-- > > ------------------------------------------------------------------------------ > To unsubscribe, send a message to > cf-server-request@houseoffusion.com with > 'unsubscribe' in the body or visit the list page at www.houseoffusion.com ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Structure your ColdFusion code with Fusebox. Get the official book at http://www.fusionauthority.com/bkinfo.cfm ------------------------------------------------------------------------------ To unsubscribe, send a message to cf-server-request@houseoffusion.com with 'unsubscribe' in the body or visit the list page at www.houseoffusion.com


Similar Subject Line Posts (+/- two weeks of this post)
RE: viewing source code  12 May 2001   (132 v/ +0 r)
RE: viewing source code  04 May 2001   (68 v/ +0 r)
Re: viewing source code  04 May 2001 (this post)   (70 v/ +0 r)
Re: viewing source code  04 May 2001   (63 v/ +0 r)
Re: viewing source code  04 May 2001   (67 v/ +0 r)
Re: viewing source code  04 May 2001   (76 v/ +0 r)
RE: viewing source code  04 May 2001   (72 v/ +0 r)
Re: viewing source code  04 May 2001   (66 v/ +0 r)
RE: viewing source code  04 May 2001   (68 v/ +0 r)
RE: viewing source code  04 May 2001   (74 v/ +0 r)
Re: viewing source code  04 May 2001   (64 v/ +0 r)
RE: viewing source code  04 May 2001   (68 v/ +0 r)
Re: viewing source code  03 May 2001   (62 v/ +0 r)
viewing source code  03 May 2001   (64 v/ +0 r)
 

Send a reply to the CF-Server list!
click to send a reply! NOTE: Many lists will reject your post unless you have already registered with them. Also - don't forget the right account to send from (for those with multiple emails!)

Feedback: If this post was exceptionally helpful, please help by giving this post a positive review.

 

TallyList : copyright Ububik - 2000