myITforum.com Community Forum myITforum.com Community Forum

Home  Forums  Blogs  Search Articles  Wiki  FAQ  Email Lists  Register  Login  My Profile  Inbox  Address Book  My Subscription  My Forums 

Photo Gallery  Member List  Search  Calendars  FAQ  Ticket List  Log Out

All Forums RSS Feed Subscription:


  


Cold Fusion web sites compromised when HTML editor enabled

 
Logged in as: Guest
  Printable Version
All Forums >> [Security, AntiVirus, and Patching] >> Breaking Virus & Security News >> Cold Fusion web sites compromised when HTML editor enabled Page: [1]
Login
Message << Older Topic   Newer Topic >>
Cold Fusion web sites compromised when HTML editor enabled - 7/3/2009 10:02:24 AM   
hwaldron


Posts: 553
Score: 270
Joined: 9/12/2002
From: Roanoke VA, USA
Status: offline
Web ADMINS should ensure the HTML text editor is secured as it may be automatically installed by default on some versions of Cold Fusion studio.

Large # of Cold Fusion web sites compromised in past 24 hours
http://isc.sans.org/diary.html?storyid=6715

QUOTE: There have been a high number of Cold Fusion web sites being compromised in last 24 hours. It appears that the attackers are exploiting web sites which have older installations of some Cold Fusion applications. These applications have vulnerable installations of FCKEditor, which is a very popular HTML text editor, or CKFinder, which is an Ajax file manager.

The vulnerable installations allow the attackers to upload ASP or Cold Fusion shells which further allow them to take complete control over the server. It appears that there are two attack vectors (both using vulnerable FCKEditor installations though) that the attackers are exploiting.

How to disable the HTML editor to improve safety
http://www.codfusion.com/blog/post.cfm/cf8-and-fckeditor-security-threat


_____________________________


Harry Waldron - Security News & Best Practices Blog
Post #: 1
Page:   [1]
All Forums >> [Security, AntiVirus, and Patching] >> Breaking Virus & Security News >> Cold Fusion web sites compromised when HTML editor enabled Page: [1]
Jump to:





New Messages No New Messages
Hot Topic w/ New Messages Hot Topic w/o New Messages
Locked w/ New Messages Locked w/o New Messages
 Post New Thread
 Reply to Message
 Post New Poll
 Submit Vote
 Delete My Own Post
 Delete My Own Thread
 Rate Posts



  
Forum Software © ASPPlayground.NET Advanced Edition 2.4.5 ANSI

0.656