Script injection on .cfm pages
I need help. For the second time in three months every single .cfm page has a malicous cross-site script appended to the orginal code. It looks something like this:

I'm having a really hard time trying to figure out where this might be coming from, or where the vulnerability is. Has anyone been affected by the same scripting attack? I'm running a windows 2003 server, fusebox 4.0 framework on MS SQL database. Thanks for any help or any leds that might help solve this problem!
