Quantcast
Channel: Adobe Community : Unanswered Discussions - ColdFusion
Viewing all articles
Browse latest Browse all 5794

When will Coldfusion 10 be updated with a newer version of Tomcat, to support PCI compliance?

$
0
0

Hello,

 

McAfee Scan Alert is reporting that Tomcat version 7.0.23.0 is not pci compliant.

We're on CF10 and just updated to update 12.

 

We've read in another thread that Tomcat is specialized for CF and that

CF should be updating Tomcat as needed.

 

The complete Scan Alert warning is:

 

Scan indicates that you are using a vulnerable version of apache tomcat web server. The version of tomcat deployed on this web server may be outdated and vulnerable to a host of issues (including but not limited to)

- denial of service attacks

- directory traversal

- default admin passwords

- execution of code by arbitrary file uploads

- bypassing of access restrictions

- cross-site scripting

- session fixation

- bypass of CSRF prevention filter

 

Thanks in advance,

-Mike


Viewing all articles
Browse latest Browse all 5794

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>