Adobe Releases Coldfusion 8 Hotfix

A vulnerability that allowed Flex 2 to access public and remote methods through the Flex 2 remoting regardless of security settings has been fixed. Normally only remote methods should be accessible through the remoting gateway if remoting is specified in the remoting-config.xml file.

The vulnerability apparently affected both Coldfusion 8.0.0 and 8.0.1. versions.

Full details of the hotfix can be found in the adobe Technote kb403328

Happy coding...

Comments