ColdFusion Software Development Company ColdFusion Software Development Company

Archive for the ‘ColdFusion’ Category

Adobe ColdFusion security hotfix 2016 APSB16-16

Adobe has released security hotfixes for ColdFusion versions 10, 11 and the 2016 release. These hotfixes resolve an input validation issue (CVE-2016-1113), a host name verification problem with wild card certificates (CVE-2016-1115) and include an updated version of Apache Commons Collections library to mitigate java deserialization (CVE-2016-1114).

Contact us right away or call us to get this security hotfix for ColdFusion installed and update your System!

Release date: May 10, 2016

Vulnerability identifier: APSB16-16

CVE numbers: CVE-2016-1113, CVE-2016-1114, CVE-2016-1115

 

ColdFusion 2016 release:

ColdFusion (2016 release) Update 1 (release date May 10, 2016) includes the following changes:

  • Tomcat upgrade to 8.0.32.
  • Addresses a vulnerability mentioned in the security bulletin
  • Several important bug fixes for security, core language features, server, and other areas.

ColdFusion 11:

ColdFusion 11 Update 8 (release date May 10, 2016) includes the following changes:

  • Tomcat upgrade to 7.0.68
  • Addresses a vulnerability mentioned in the security bulletin
  • Several important bug fixes for security, language, AJAX, and other features.
  • This update is cumulative and includes fixes from all the previous ColdFusion 11 updates.

ColdFusion 10:

ColdFusion 10 Update 19 (release date May 10, 2016) includes the following changes:

  • Tomcat upgrade to 7.0.68.
  • Addresses a vulnerability mentioned in the security bulletin
  • Important bug fixes for security and server.
  • This update is cumulative and includes fixes from previous ColdFusion 10 updates.

Adobe recommends that customers apply the appropriate hotfix immediately, therefore you should contact your Administrator, or you can have Our Team at Ecom Solutions help you implement it.

Contact us right away to get this security hotfix for ColdFusion installed and update your System!

ColdFusion Array

Array is an essential tool in any programming language, which makes its implementation crucial for the programming language to be successful. In order to meet their goal of making simple scripting language for rapid and easy web development, Adobe made ColdFusion arrays simple for people who are lacking the proper training and programming experience. (more…)

Responsive Design on the ColdFusion Environment

As the amount of internet traffic served to mobile devices is on the rise, Responsive web design is becoming more and more important. The mobile trend is so popular that Google has started penalizing websites that aren’t mobile-friendly, and will boost the ones that have a Responsive mobile architecture, especially for searches originating on a mobile device. Let’s admit it: people like to be confortable and they are likely to be on the run, favoring the use of mobile devices. Meaning in the near, as well as the far future,  mobile usage (this includes mobile phones and tablets) will surely surpass desktop usage globally. (more…)

SSL and ColdFusion error 500

Your ColdFusion Website may yield errors related to SSL and the Java Environment, typically returning a 500 – internal server error or re-routing clients to the logon page. They won’t be able to make purchases or transactions.  If your ColdFusion Website has an E-Commerce component, or accepts payments via Merchant Accounts, Gateways, or credit card processing engines such as Authorize.net then you might already be looking for a fix.

This happens because the certificate issuing authority is not registered in the security keystore in the JVM that ColdFusion is running on top of. The problem can be solved by troubleshooting the SSL certificate for the Website or running Service. A ColdFusion programmer with administrative rights on the server can work on the SSL certificate into your ColdFusion Environment and help let your transactions / payments go through again.

You can always Contact or E-mail our ColdFusion and E-Commerce Specialists if you have questions or you need help

 

How do I know I need help?

  • I have ColdFusion and my customers can’t buy my products
  • We are getting a ColdFusion 500 internal server error
  • I am trying to buy something and I am being re-routed to logon
  • I can’t make a transaction or a purchase on a ColdFusion Server
  • I am having an SSL error related to Authorize.net

ColdFusion 11 Overview Video

http://www.youtube.com/watch?feature=player_embedded&v=vz8j6RbT-MY

Hostway ColdFusion Hosting Alternatives

Hostway has been providing ColdFusion Dedicated Hosting for awhile, but for some Clients, their Services just seem expensive. If for some reason you have switched from GoDaddy ColdFusion Hosting, which was discontinued in 2011, you may find that Hostway.com ColdFusion Hosting comes at a price. Reasons behind their ColdFusion Hosting being more expensive? Yes ! Plenty, and justified! GoDaddy ColdFusion Hosting was cheap price-wise, but they were also lacking the appropriate Support and necessary Services to run Websites and Applications on the ColdFusion Environment properly. If you have any questions about ColdFusion Hosting let us know, and If ColdFusion Hosting with Hostway.com doesn’t fit the bill, you can try ColdFusion Hosting alternatives here.

ColdFusion Security

ColdFusion is a rapid application development (RAD) platform and a programming language used with that platform. With most programming languages security is your number one priority, and ColdFusion Security is no different.

Expert ColdFusion Programmers will focus on ColdFusion Security in every aspect of their design and implementation. It is utterly important that ColdFusion Security be planned for in advance during the design stages of a project, and that attention to detail be carried through the implementation phase. It does no good to plan to design a piece of software with security in mind, and then have that be the feature that gets cut due to a lack of time or budget. Make room in your schedule and budget for security implementation and testing. (more…)

What is ColdFusion SQL injection?

SQL injection, like ColdFusion Cross-Site Scripting, is a type of digital attack where a potential intruder will look for weaknesses in application and database systems that can be exploited to gain access to user information such as usernames and passwords. ColdFusion SQL injection is an SQL injection attack aimed at ColdFusion installations.

There are several types of ColdFusion SQL injection attacks. The most common form of attack is referred to as a classic SQL injection attack. This kind of attack is performed when a web interface does not properly filter out special characters such as semicolons. In this attack, the intruder will go to a web form field such as the log in field, and type in their username followed by a special character and an SQL command. Since many web forms are run on the database with administrator permissions this will allow the attacker to execute arbitrary code to gain access to the database. (more…)

ColdFusion With Social Networks

It goes without saying that social networking is a powerful force for reaching potential customers and maintaining relationships with existing customers. Combining ColdFusion With Social Networks gives you an unparalleled ability to leverage this powerful platform.

ColdFusion is both a development platform and a programming language used on that platform, and allows for incredibly rich user interfaces and data management features. By combining ColdFusion with social networking you have a powerful tool for brand management and marketing as well as one for maintaining customer loyalty. (more…)

Mura CMS – Handling your Content

Websites these days have tons of information and most of it is dynamic; a quick, easy way to adjust certain parts of the site without affecting others is needed. This is where Content Management Systems (CMS) come in. CMS provide a simple, intuitive way to manage a large collection of data with the ease of automation, built in functions, and other helpful tricks. One of the biggest names in this market is Mura. (more…)

HAVE A QUESTION?

We would love to help.
Give us a call:

(718) 793-2828

Get a free project estimate:

Recent Comments
    Archives