Hope noone is doing what these guys are. They have their SQL logins in 
their application.cfm and global.asa.

http://www5.proflowers.com/global.asa+.htr
http://www5.proflowers.com/application.cfm+.htr

Here's the MS TechNet article about the hole.

http://www.microsoft.com/technet/security/bulletin/ms00-031.asp


------------------------------------------------------------------------------
Archives: http://www.mail-archive.com/cf-talk@houseoffusion.com/
To Unsubscribe visit 
http://www.houseoffusion.com/index.cfm?sidebar=lists&body=lists/cf_talk or send a 
message to [EMAIL PROTECTED] with 'unsubscribe' in the body.

Reply via email to