Quantcast
Channel: Adobe Community : Popular Discussions - ColdFusion Server Administration
Viewing all articles
Browse latest Browse all 78799

ColdFusion 10 standalone is locally vulnerable by default on Linux

$
0
0

By default, on Linux, the ColdFusion 10 standalone installer creates almost 800 word-writable files and directories.

 

To mention a few:

The <install_dir> directory

<install_dir>/jre/bin/java executable

 

Linux CF10 admins need to make sure they correct this manually until Adobe comes up with a fix.

 

I have filed a bug about this, too. As a security issue the bug is not public, though.

 

Br,

Jan


Viewing all articles
Browse latest Browse all 78799

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>