Quantcast
Channel: Adobe Community: Message List
Viewing all articles
Browse latest Browse all 90000

Re: Addressing security scan results

$
0
0

Nothing really, and I even renamed my application.cfm file.  I even tested it on localhost on my local machine in the CF Dev environment.

 

What I'm doing is this:

 

  1. Load the page.
  2. Open a Firefox addon called "Tamper Data".  We've found this to pretty closely replicate the scanner that out security people use.  If it passes this addon, it passes the scan, and vice versa.
  3. Click "Start Tamper".
  4. Type a number into the form field, then submit.
  5. When the addon asks, I edit that post field by adding &foo, then click submit.

 

That gives me the error.

 

Perhaps the addon/scanner are doing something behind the scenes that we don't know about?


Viewing all articles
Browse latest Browse all 90000

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>