ColdFusion 10 standalone is locally vulnerable by default on Linux

By default, on Linux, the ColdFusion 10 standalone installer creates almost 800 word-writable files and directories.
To mention a few:
The <install_dir> directory
<install_dir>/jre/bin/java executable
Linux CF10 admins need to make sure they correct this manually until Adobe comes up with a fix.
I have filed a bug about this, too. As a security issue the bug is not public, though.
Br,
Jan

The JCA Connector to MQ Series run in Oracle Application Server on Linux ??
Standalone is OK i test but in OAS this run ??
The only difference entire OC4J configuration used in Standalone and OAS is in opmn.xml, that it is its necessary add a <enviroment> to found the MQ Libraries. Have another difference ??
tanks

Similar Messages

  • How to set local help as default in ID CS5?

    Just received a replacement laptop w/CS5 installed & cannot figure out how to disable/turn off community help...I want it to default to local help whether connected to the net or not.
    Thanks
    Update Info:
    Or, if setting local help as default is not possible, what about turning off or disabling internet sensing by the program?  This will be used in the field and sometimes slow connections are the only thing available.  Testing it on a dial-up connection, it just set there trying to access community help without allowing access to the local help until the dial-up connection was closed.

    Thanks Peter...I'd already found that, but when I first found it, the last section was not in that screen and in playing around, I found that Air was not installed proprly, uninstalled & re-installed that & that last section with the 2 ticks showed up & selected local help.
    Next, I get a message that there is no PDF reader installed...but a working copy of AR7 is & it works...I'm thinking that CS5 should be uninstalled & re-installed, however, that will have to wait until I can get the laptop back to the company we're working for.
    The community help window indicated the local help file to be 40Meg, but a search found no PDF that large on this machine.
    Is this PDF available for direct download & I'll just access it outside of the help screen if necessary.
    Laptop/program owner is in Canada, I'm visiting in Georgia & have an overseas flight on Wednesday...

  • Setting Local Currency as default display in all accounting document displa

    Hi,
    I have a Requirement where I am looking to set Local Currency as default display in all accounting document display screen.
    Can you please help me here.

    Hi,
    I already followed this but this is not working. I still getting the FB03 figures by default in the Document Currency only and I have to Click the Display Currency Button to see the Figures in the Local Currency.
    Is there is any way by which the Document display in Local Currency only and I don't have to press Display Currency Button to see them in the Local Currency.

  • Xdg-open didn't read ~/.local/share/applications/default.list

    xdg-open doesn't read ~/.local/share/applications/default.list, and the only way to associate application and filetype is do following command:
    xdg-mime default thur.desktop inode/directory
    But, the content of default.list will be rewrite.
    xdg-open ignore everything I have added to default.list manually.
    It looks like xdg-open have something like database to track association I added through  command, then dump it to default.list after I execute the command.
    Does anyone have idea what wrong happened? tell me please
    Last edited by lanyitin800830 (2012-05-10 18:16:10)

    Update: This works (line 402 in /usr/bin/xdg-open):
    ---( From )---
    $command_exec "$1"
    ---( To )---
    eval `"$command_exec" "$1"`
    At least for me, I get the expected behavior for pdfs (evince opens the file, nothing else) with this change. Is this a bug?

  • How to grab local computer's default printer from a link in OAF

    I developed a anonymous page (guest grants) , and call a concurrent program on click of a button. output is sent to the printer which is defaulted in your profile option - printer.
    if i am logged into oracle- output from that button goes to my printer set for my oracle profile but if i open the anonymous page and then hit the conc program button...it doesnt print
    ofcourse guest doesnt have default printer set and we dont want to set it as this link could be invoked from several machines attached to various printers...
    can I somehow in my page's controller grab the default printer attached to windows machine , link is being invoked from ??
    any pointers would be appreciated...
    thanks

    Anyone on this ??
    how can I get hold of my machines local printer from OAF ....
    plz....
    thanks

  • How to run terminal with different locales than system default?

    I use fi_FI,UTF-8 as default, and I want have one window in tmux that would use iso-8859-1. If I type command "export LANG="fi_FI.iso88591"" in term, it won't change or atleast doesn't work properly. But if I start new instance of xterm (or other terminal) from this term, locales work correctly there. If I take utf-8 support off from tmux it makes the problem little bit different. It will show scandinavian alphabets (å, ö, ä) correctly but adds futile space after letter. I tried to fiddle with .bashrc, but it didn't get me any further either.

    hadrons123 wrote:
    wunjo wrote:I use fi_FI,UTF-8 as default, and I want have one window in tmux that would use iso-8859-1. If I type command "export LANG="fi_FI.iso88591"" in term, it won't change or atleast doesn't work properly. But if I start new instance of xterm (or other terminal) from this term, locales work correctly there. If I take utf-8 support off from tmux it makes the problem little bit different. It will show scandinavian alphabets (å, ö, ä) correctly but adds futile space after letter. I tried to fiddle with .bashrc, but it didn't get me any further either.
    I don't think the command is i right.
    see the wiki for setting locale
    https://wiki.archlinux.org/index.php/Locale
    I don't understand what could be wrong here? fi_FI.iso88591 is how it is typed when I write "locale -a"
    C
    POSIX
    en_US
    en_US.iso88591
    en_US.utf8
    fi_FI
    fi_FI.iso88591
    fi_FI.iso885915@euro
    fi_FI.utf8
    fi_FI@euro
    finnish
    and it doesn't have any difference is it in "" or not, and yes according to your link I should be use LANG variable

  • Cannot add Coldfusion 10 as a local server to Coldfusion Builder 2

    My computer has the following specs.
    1.  Intel T7200 (Quadcore 1.73Ghz)
    2.  64 GB SSD + 500 GB HDD
    3.  Windows 7 Professional 64-Bit
    4.  4GB RAM
    I installed a fresh copy of Coldfusion 10 on C: drive and a fresh copy of Coldfusion Builder 2.0 on E: drive.
    I followed the directions provided by Adobe to setup a local server and keep on getting "Unable to find JNDI port. Ensure that you have provided correct server information."
    When I change it to a remote server, I can browse the server's objects with CFB 2. 
    I would like to install it as a local server but can't get it to work. 
    Does anybody have any ideas why this might be happening?
    Thanks in advance.
    JT

    Here are the exact steps I took to add the server.
    Step 1
    Step 2: I selected CF 9.X because 10.X was not avilable.  Under server home, I tried "C:\Coldfusion10" and it would not let me move forward.  As a result, I added the "/cfusion" and it showed the version number.
    Step 3
    Result: Was kind of expected since I did not select CF 10.x.

  • Adobe Reader X standalone client does not recognize default browser.

    Adobe Reader works fine if I'm on a webpage and open a PDF. It opens in the browser as it should.
    I have PDF files on my hard drive. I can start up Adobe Reader from the desktop and read them, but if I click a link inside the PDF, it opens in Internet Explorer which is not my default browser. I use Firefox as my browser.
    Reader 9.4 works great but this new one doesn't cut it and Adobe doesn't provide any support for it that I can find.
    I am using Firefox 3.6.18 on Windows Vista. I have reset my default browser several different ways now. I've made IE the default and then Firefox again. I've gone into Firefox options and told it to Check to be sure it is default. I've gone into default programs and re-chosen Firefox. Nothing has worked.
    I have 2 questions:
    1) Does anybody know how to actually contact Adobe about Reader?
    2) Does anybody know a setting for Reader anywhere that I can tweak to fix this? I'm not afraid of the registry but I'm not going to experiment in it either.

    I was able to resolve this by disabling Protected Mode at startup.
    Go to Edit > Preferences > select General tab > uncheck "Enable Protected Mode at startup" > restart Reader.
    I do not consider this a fix since I have now disabled some of the security given to us with the upgrade. This is merely a work-around.
    I submitted a bug report to Adobe. Who knows if they'll respond to it.

  • Convert Coldfusion 8 standalone to multiserver

    Hi,
    I have one coldfusion 8 running on RHEL 4 with apache as my web server, now there is requirement to enable multiserver feature. Can somebody help me with step by step process to do the same.
    thanks in advance

    I am little bit confused here, as of now what i understood is as below:
    If coldfusion running in single server mode then first backup all the things and uninstall it.
    Run a fresh installation with multiserver configuration and configure multiple instance as required.
    Restore the backup in one of the instance and update it accordingly.
    Test it and go live.
    The other way: get ready a second server with CF8 multiserver configuration and restore the backup from single to the multiserver one.Test it and go live.
    Regards,
    Rahul

  • Mac OSX 10.9.4 coldfusion 11 standalone server ERROR: HTTP Status 500 - java.lang.NullPointerException

    Hi all.
    I have installed the cold fusion server.
    at first with mac server, apache..... but after install cold fusion and want to go to the admin page:
    HTTP Status 500 - java.lang.NullPointerException
    I deinstalled the server from mac and cold fusion..
    after a fresh install of coldfusion 11 and use the build in server..
    the same error..
    does anybody knows the problems?
    I Use Java 7 Update 67
    A friend of me have installed it .. it runs
    greetings thorsten

    Hi this is my cold fusion Error LOG
    java.lang.NullPointerException
      at coldfusion.CfmServlet.init(CfmServlet.java:97)
      at coldfusion.bootstrap.ClassloaderHelper.initServletClass(ClassloaderHelper.java:121)
      at coldfusion.bootstrap.BootstrapServlet.init(BootstrapServlet.java:59)
      at org.apache.catalina.core.StandardWrapper.initServlet(StandardWrapper.java:1279)
      at org.apache.catalina.core.StandardWrapper.loadServlet(StandardWrapper.java:1192)
      at org.apache.catalina.core.StandardWrapper.allocate(StandardWrapper.java:864)
      at org.apache.catalina.core.StandardWrapperValve.invoke(StandardWrapperValve.java:134)
      at org.apache.catalina.core.StandardContextValve.invoke(StandardContextValve.java:122)
      at org.apache.catalina.authenticator.AuthenticatorBase.invoke(AuthenticatorBase.java:501)
      at org.apache.catalina.core.StandardHostValve.invoke(StandardHostValve.java:170)
      at org.apache.catalina.valves.ErrorReportValve.invoke(ErrorReportValve.java:98)
      at org.apache.catalina.core.StandardEngineValve.invoke(StandardEngineValve.java:116)
      at org.apache.catalina.connector.CoyoteAdapter.service(CoyoteAdapter.java:422)
      at org.apache.coyote.http11.AbstractHttp11Processor.process(AbstractHttp11Processor.java:104 0)
      at org.apache.coyote.AbstractProtocol$AbstractConnectionHandler.process(AbstractProtocol.jav a:607)
      at org.apache.tomcat.util.net.JIoEndpoint$SocketProcessor.run(JIoEndpoint.java:313)
      at java.util.concurrent.ThreadPoolExecutor.runWorker(ThreadPoolExecutor.java:1145)
      at java.util.concurrent.ThreadPoolExecutor$Worker.run(ThreadPoolExecutor.java:615)
      at java.lang.Thread.run(Thread.java:745)
    Sep 16, 2014 8:30:59 AM org.apache.catalina.core.ApplicationContext log
    INFO: failed to load: coldfusion.CfmServlet
    Sep 16, 2014 8:30:59 AM org.apache.catalina.core.StandardWrapperValve invoke
    SEVERE: Allocate exception for servlet CfmServlet
    java.lang.NullPointerException
      at coldfusion.CfmServlet.init(CfmServlet.java:97)
      at coldfusion.bootstrap.ClassloaderHelper.initServletClass(ClassloaderHelper.java:121)
      at coldfusion.bootstrap.BootstrapServlet.init(BootstrapServlet.java:59)
      at org.apache.catalina.core.StandardWrapper.initServlet(StandardWrapper.java:1279)
      at org.apache.catalina.core.StandardWrapper.loadServlet(StandardWrapper.java:1192)
      at org.apache.catalina.core.StandardWrapper.allocate(StandardWrapper.java:864)
      at org.apache.catalina.core.StandardWrapperValve.invoke(StandardWrapperValve.java:134)
      at org.apache.catalina.core.StandardContextValve.invoke(StandardContextValve.java:122)
      at org.apache.catalina.authenticator.AuthenticatorBase.invoke(AuthenticatorBase.java:501)
      at org.apache.catalina.core.StandardHostValve.invoke(StandardHostValve.java:170)
      at org.apache.catalina.valves.ErrorReportValve.invoke(ErrorReportValve.java:98)
      at org.apache.catalina.core.StandardEngineValve.invoke(StandardEngineValve.java:116)
      at org.apache.catalina.connector.CoyoteAdapter.service(CoyoteAdapter.java:422)
      at org.apache.coyote.http11.AbstractHttp11Processor.process(AbstractHttp11Processor.java:104 0)
      at org.apache.coyote.AbstractProtocol$AbstractConnectionHandler.process(AbstractProtocol.jav a:607)
      at org.apache.tomcat.util.net.JIoEndpoint$SocketProcessor.run(JIoEndpoint.java:313)
      at java.util.concurrent.ThreadPoolExecutor.runWorker(ThreadPoolExecutor.java:1145)
      at java.util.concurrent.ThreadPoolExecutor$Worker.run(ThreadPoolExecutor.java:615)
      at java.lang.Thread.run(Thread.java:745)

  • URGENT - How do I attach an unattend file in SCCM to copy a local profile to default users profile? - URGENT

    We are using SCCM to capture an OS image with the hopes of deploying this image to multiple computers. However, we are having issues with copying the admin profile to the default users profile.  THIS PROCESS IS OF UTMOST IMPORTANCE IN OUR PROCESS. Does
    anyone know of to copy the admin profile to the default users profile?
    We already have an uattend file to use but we don't know how or where to apply it within SCCM.  PLEASE HELP!
    Thanks in advance.

    Hi,
    Here is how to do it for
    Windows 7,
    http://www.deploymentresearch.com/Research/tabid/62/EntryId/43/How-CopyProfile-really-works-in-Windows-7-Deployments.aspx
    Windows 8:http://windowsdeployments.net/using-copyprofile-in-unattend-xml-to-customize-windows-8/
    You need to add CopyProfile=True to the Unattend.xml file that you use to deploy the image.
    Regards,
    Jörgen
    -- My System Center blog ccmexec.com -- Twitter
    @ccmexec

  • MQ Series JCA Connector run in Standalone OC4J but not in OAS on Linux

    Hi all,
    My problem is my application run in a Standalone OC4J in Windows and Linux and
    in a Oracle Application Server 10.1.3 in Windows but not run in a Oracle
    Application Server 10.1.3 on Linux why ?
    When i try deploy my application in Oracle Application Server on linux the
    error is throw:MQJMS2005: failed to create MQQueueManager for
    'ms009.queue.manager'
    In Standalone container in linux and windows and in a Oracle Application Server on Windows the deploy is fine.
    I use the same configurations in all containers and only in a OAS 10.1.3 on
    linux my app not run.
    I thank any suggestions!
    Message was edited by:
    Carlos Lacerda

    The JCA Connector to MQ Series run in Oracle Application Server on Linux ??
    Standalone is OK i test but in OAS this run ??
    The only difference entire OC4J configuration used in Standalone and OAS is in opmn.xml, that it is its necessary add a <enviroment> to found the MQ Libraries. Have another difference ??
    tanks

  • How can I change default applications (Linux) ?

    I have a RealVideo server, and I want to use RealPlayer to open various content-types such as audio/x-pn-realaudio and text/vnd.rn-realtext
    For some types, I get a drop-down list that says "realplay (default)", but it's not, it's Totem, which is crippled by RedHat so it won't play anything except, maybe, Ogg. I can select the real realplay by browsing, which works but is tedious - my .mailcap file has all these types listed as using realplay so that's what I'd expect to be used.
    For one type, it launches Totem immediately, and I don't see that in the edit/preferences/applications list so I can fix it.
    Now that I think about it, it's probably got the Totem plugin installed. I'm not sure how to modify that short of disabling it altogether

    You can (re)move the Totem plugins if you do not want to use them.
    You can see the installed plugins that are enabled on the about:plugins page.
    * http://kb.mozillazine.org/about%3Aplugins
    You can set the plugin.expose_full_path pref to true on the about:config page to see the full path of plugins on the about:plugins page.
    It is best not to leave that pref set to true as it exposes that full path to web servers, so reset that pref to false after you are done with the about:plugins page.
    See "Manually uninstalling a plugin":
    * https://support.mozilla.org/kb/Troubleshooting+plugins

  • Digital Signatures Defaults on Linux/WebSphere/Oracle DB

    I have some things I'm trying to clarify on an install I currently have, and a new install I'm about to do.
    My current install (ES 8.1), the server doesn't have internet access, so when I certify a PDF using a VeriSign cert, it takes a little longer per file to certify when compared to a self-signed cert. I believe it's making an attempt to do a CRL check based on the URL in the cert (despite telling it to not do a CRL check or embed the OCSP response).
    My new install (ES 8.2) will have internet access, however I'm trying to determine that if the lookup for the CRL and OCSP checks is going to happen automatically:
    1 - What port will it try to make that call on from the application server?
    2 - Does it cache this information for use on other documents to certify, or will it try to make this call each and every time I certify a document?
    3 - It's also my understanding that the use of the Internet connection by LiveCycle is automatic and no configuration is needed, provided the proper ports have been opened up on the Linux machine, etc. Is that correct?
    Thanks in advance,
    Mike

    I have some things I'm trying to clarify on an install I currently have, and a new install I'm about to do.
    My current install (ES 8.1), the server doesn't have internet access, so when I certify a PDF using a VeriSign cert, it takes a little longer per file to certify when compared to a self-signed cert. I believe it's making an attempt to do a CRL check based on the URL in the cert (despite telling it to not do a CRL check or embed the OCSP response).
    My new install (ES 8.2) will have internet access, however I'm trying to determine that if the lookup for the CRL and OCSP checks is going to happen automatically:
    1 - What port will it try to make that call on from the application server?
    2 - Does it cache this information for use on other documents to certify, or will it try to make this call each and every time I certify a document?
    3 - It's also my understanding that the use of the Internet connection by LiveCycle is automatic and no configuration is needed, provided the proper ports have been opened up on the Linux machine, etc. Is that correct?
    Thanks in advance,
    Mike

  • Change default monitor linux uses BEFORE X is loaded

    i can't seem to find the answer for this. eveything talks about monitors in x
    --  i need to get linux to boot up on the VGA  while the TV plugged in via HDMI
    --  if tv is plugged in it boots up on the tv
    if i boot with only my VGA plugged in it's fine but if i boot up with my VGA and my TV (hdmi)
    my monitor switches over to the tv before i get the login prompt (x has not loaded yet).
    if i startx i loose the tv picture as well (now both screens are black)
    I have on-board ATI radeon HD7560D using xf86-video-ati driver (new install, never installed any other graphix drivers)
    thx in advance!
    Last edited by skinney6 (2013-05-30 19:12:31)

    this is from my kernel boot journal
    Radeon Display Connectors
    May 31 02:56:25 aries kernel: [drm] Connector 0:
    May 31 02:56:25 aries kernel: [drm]   HDMI-A-1
    May 31 02:56:25 aries kernel: [drm]   HPD1
    May 31 02:56:25 aries kernel: [drm]   DDC: 0x6530 0x6530 0x6534 0x6534 0x6538 0x6538 0x653c 0x653c
    May 31 02:56:25 aries kernel: [drm]   Encoders:
    May 31 02:56:25 aries kernel: [drm]     DFP1: INTERNAL_UNIPHY2
    May 31 02:56:25 aries kernel: [drm] Connector 1:
    May 31 02:56:25 aries kernel: [drm]   VGA-1
    May 31 02:56:25 aries kernel: [drm]   HPD2
    May 31 02:56:25 aries kernel: [drm]   DDC: 0x6540 0x6540 0x6544 0x6544 0x6548 0x6548 0x654c 0x654c
    May 31 02:56:25 aries kernel: [drm]   Encoders:
    May 31 02:56:25 aries kernel: [drm]     CRT1: INTERNAL_UNIPHY2
    May 31 02:56:25 aries kernel: [drm]     CRT1: NUTMEG
    May 31 02:56:25 aries kernel: [drm] Connector 2:
    May 31 02:56:25 aries kernel: [drm]   DP-1
    May 31 02:56:25 aries kernel: [drm]   HPD3
    May 31 02:56:25 aries kernel: [drm]   DDC: 0x6550 0x6550 0x6554 0x6554 0x6558 0x6558 0x655c 0x655c
    May 31 02:56:25 aries kernel: [drm]   Encoders:
    May 31 02:56:25 aries kernel: [drm]     DFP2: INTERNAL_UNIPHY
    and this...
    kernel: fbcon: radeondrmfb (fb0) is primary device
    Last edited by skinney6 (2013-05-31 18:22:25)

Maybe you are looking for

  • How to take backup in external harddisk

    Dear All, For takeing backup on external harddisk. i do the following step:-i open MS server managment Start>Programes>Microsoft SQL Server Stuido--> Connect to the SAP Server Instance for which  want to take the Backup of the Database, then ->Server

  • Google YouTube ad won't close in app store even after downloading

    Google YouTube ad won't close in app store even after downloading -- this means I can't get to the store

  • Photoshop Elements 13 mit der Twain Schnittstelle

    How I Scan. Photoshop Elements 13 with the Twain interface Which file should be moved or copied. With element 11 everything was working properly. I work with Win. 8 Wie Scanne ich mit Photoshop Elements 13 mit der Twain Schnittstelle. Welche Datei mu

  • 1:1 Training - Midlands, UK

    Hi I'm new to Business Catalyst and whilst I'm familiar with CMS (mainly Drupal and Joomla) I would like some 1:1 training to get me going quicker.  I have got a client who is looking to revamp their website particulary making it more dynamic by inte

  • Dual G5 freezes at random times...

    Computer Specs: Dual 2.0 GHz G5 (2003) 2.5 GB RAM (2 x 1GB, 2 x 256 MB) 160 GB HD SATA slot A (boot disk) 500 GB HD SATA slot B OS 10.5.8 My computer has been working fine for the past 6 and half years, and then I decided to move my office. Once I ho