I have a question for you guys, Thismorning once I got into the office, I got 
all the following erros (With Different Websites) in my error events handler.

=============================================================
struct 
Detail [empty string]  
ErrorCode n/a  
Message Invalid data 
http://www.ce-enterprise.com/inetonlinetk/shop/files/img/logo_DarkBlueStyle/goge/oxag/
 for CFSQLTYPE CF_SQL_NUMERIC.  
NativeErrorCode 0  
SQLState n/a  
StackTrace coldfusion.sql.Parameter$DataTypeMismatchException: Invalid data 
http://www.ce-enterprise.com/inetonlinetk/shop/files/img/logo_DarkBlueStyle/goge/oxag/
 for CFSQLTYPE CF_SQL_NUMERIC. at 
coldfusion.sql.Parameter.getMappingValue(Parameter.java:141) at 
coldfusion.sql.Parameter.getMappingValues(Parameter.java:38) at 
coldfusion.sql.InParameter.setStatement(InParameter.java:33) at 
coldfusion.sql.ParameterList.setStatement(ParameterList.java:107) at 
coldfusion.sql.Executive.executeQuery(Executive.java:755) at 
coldfusion.sql.Executive.executeQuery(Executive.java:675) at 
coldfusion.sql.Executive.executeQuery(Executive.java:636) at 
coldfusion.sql.SqlImpl.execute(SqlImpl.java:236) at 
coldfusion.tagext.sql.QueryTag.doEndTag(QueryTag.java:500) at 
cfindex2ecfm867182156._factor18(D:\home\uberhunt.com\wwwroot\Hunts\DailyHunts\index.cfm:6)
 at 
cfindex2ecfm867182156.runPage(D:\home\uberhunt.com\wwwroot\Hunts\DailyHunts\index.cfm:1)
 at coldfusion.runtime.CfJspPage.invoke(CfJspPage.java:152) at 
coldfusion.tagext.lang.IncludeTag.doStartTag(IncludeTag.java:349) at 
coldfusion.filter.CfincludeFilter.invoke(CfincludeFilter.java:65) at 
coldfusion.filter.ApplicationFilter.invoke(ApplicationFilter.java:219) at 
coldfusion.filter.RequestMonitorFilter.invoke(RequestMonitorFilter.java:51) at 
coldfusion.filter.PathFilter.invoke(PathFilter.java:86) at 
coldfusion.filter.ExceptionFilter.invoke(ExceptionFilter.java:69) at 
coldfusion.filter.ClientScopePersistenceFilter.invoke(ClientScopePersistenceFilter.java:28)
 at coldfusion.filter.BrowserFilter.invoke(BrowserFilter.java:38) at 
coldfusion.filter.GlobalsFilter.invoke(GlobalsFilter.java:38) at 
coldfusion.filter.DatasourceFilter.invoke(DatasourceFilter.java:22) at 
coldfusion.filter.RequestThrottleFilter.invoke(RequestThrottleFilter.java:115) 
at coldfusion.CfmServlet.service(CfmServlet.java:107) at 
coldfusion.bootstrap.BootstrapServlet.service(BootstrapServlet.java:78) at 
jrun.servlet.FilterChain.doFilter(FilterChain.java:86) at 
com.seefusion.Filter.doFilter(Filter.java:49) at 
com.seefusion.SeeFusion.doFilter(SeeFusion.java:1500) at 
jrun.servlet.FilterChain.doFilter(FilterChain.java:94) at 
jrun.servlet.FilterChain.service(FilterChain.java:101) at 
jrun.servlet.ServletInvoker.invoke(ServletInvoker.java:91) at 
jrun.servlet.JRunInvokerChain.invokeNext(JRunInvokerChain.java:42) at 
jrun.servlet.JRunRequestDispatcher.invoke(JRunRequestDispatcher.java:257) at 
jrun.servlet.ServletEngineService.dispatch(ServletEngineService.java:541) at 
jrun.servlet.jrpp.JRunProxyService.invokeRunnable(JRunProxyService.java:204) at 
jrunx.scheduler.ThreadPool$DownstreamMetrics.invokeRunnable(ThreadPool.java:318)
 at 
jrunx.scheduler.ThreadPool$ThreadThrottle.invokeRunnable(ThreadPool.java:426) 
at 
jrunx.scheduler.ThreadPool$UpstreamMetrics.invokeRunnable(ThreadPool.java:264) 
at jrunx.scheduler.WorkerThread.run(WorkerThread.java:66)  
TagContext array  
1 struct 
COLUMN 0  
ID CFQUERY  
LINE 6  
RAW_TRACE at 
cfindex2ecfm867182156._factor18(D:\home\uberhunt.com\wwwroot\Hunts\DailyHunts\index.cfm:6)
  
TEMPLATE D:\home\uberhunt.com\wwwroot\Hunts\DailyHunts\index.cfm  
TYPE CFML  
 
2 struct 
COLUMN 0  
ID CF_INDEX  
LINE 1  
RAW_TRACE at 
cfindex2ecfm867182156.runPage(D:\home\uberhunt.com\wwwroot\Hunts\DailyHunts\index.cfm:1)
  
TEMPLATE D:\home\uberhunt.com\wwwroot\Hunts\DailyHunts\index.cfm  
TYPE CFML  
 
 
Type Database  
sql_type CF_SQL_NUMERIC  
value 
http://www.ce-enterprise.com/inetonlinetk/shop/files/img/logo_DarkBlueStyle/goge/oxag/
  
Date: 06/06/2008 Time: 01:39 AM IP: 80.33.85.16 Browser: Mozilla/4.0 
(compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 2.0.50727; .NET CLR 1.1.4322) 

=============================================================

They were trying to parse the following URLS:

http://www.ce-enterprise.com/inetonlinetk/shop/files/img/logo_DarkBlueStyle/goge/oxag/
 

http://www.cusianagas.com/administrador/ciw/asezu/

http://www.eddufresne.org/components/kill.com_calendar.backup.kill/kill.ezi.kill/oye/ekasu/

http://www.vlopezalvarez.com/Personal/Fotos/Viajes/xaj/ocaceg/

http://targi.pc-tuning.pl/images/news/aqa/cib/

http://targi.pc-tuning.pl/images/news/aqa/cib/

Also, in one of the URLS this code was in it:

<?php echo md5("just_a_test");?>

What is intended in this attack?

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~|
Adobe® ColdFusion® 8 software 8 is the most important and dramatic release to 
date
Get the Free Trial
http://ad.doubleclick.net/clk;192386516;25150098;k

Archive: 
http://www.houseoffusion.com/groups/CF-Newbie/message.cfm/messageid:3734
Subscription: http://www.houseoffusion.com/groups/CF-Newbie/subscribe.cfm
Unsubscribe: 
http://www.houseoffusion.com/cf_lists/unsubscribe.cfm?user=11502.10531.15

Reply via email to