[15820] in bugtraq

home help back first fref pref prev next nref lref last post

New Allaire Security Zone Bulletins

daemon@ATHENA.MIT.EDU (Aleph One)
Tue Jul 18 03:42:37 2000

Content-Type: text/plain
Message-Id:  <20000718010952.16646.qmail@underground.org>
Date:         Mon, 17 Jul 2000 18:09:52 -0700
Reply-To: aleph1@UNDERGROUND.ORG
From: Aleph One <aleph1@UNDERGROUND.ORG>
To: BUGTRAQ@SECURITYFOCUS.COM

Dear Allaire Customer --

New security issues that may affect Allaire customers have recently come to our attention. Please visit the Security Zone at the Allaire Web site to learn about this new issue and what actions you can take to address it:

http://www.allaire.com/security

This week we posted the following new Allaire Security Bulletin:

ADDED:

ASB00-16: Microsoft: Patch Available for "Stored Procedure Permissions" Vulnerability
  Affects: Microsoft SQL Server 7.0

ASB00-17: Microsoft: Patch Updated for "DTS Password" Vulnerability
  Affects: Microsoft SQL Server 7.0

As a Web application platform vendor, one of our highest concerns is the security of the systems our customers deploy. We understand how important security is to our customers, and we're committed to providing the technology and information customers need to build secure Web applications. Thank you for your time and consideration on this issue.

-- Security Response Team, Allaire Corporation

P.S. As a reminder, Allaire has set up an email address that customers can use to report security issues associated with an Allaire product: secure@allaire.com

======================================================================================
Allaire respects the Web and the privacy of those who use it. If you do not
want to receive any future messages from Allaire please forward this email to
remove@allaire.com with the subject "REMOVE".
======================================================================================

home help back first fref pref prev next nref lref last post