Project

General

Profile

Actions

Bug #19975

closed

Jumpurl allows to access arbitrary files on a Server

Added by Marcus Krause almost 16 years ago. Updated over 14 years ago.

Status:
Closed
Priority:
Must have
Assignee:
Category:
-
Target version:
-
Start date:
2009-02-06
Due date:
% Done:

0%

Estimated time:
TYPO3 Version:
4.0
PHP Version:
5.2
Tags:
Complexity:
Is Regression:
Sprint Focus:

Description


Files

bug_10364.diff (756 Bytes) bug_10364.diff Administrator Admin, 2009-02-07 20:50
Actions #1

Updated by Michael Stucki almost 16 years ago

Hotfix is attached. It should work on all versions starting from 3.3 up to Trunk.

Actions #2

Updated by Ingo Renner almost 16 years ago

looks simple, +1

Actions #3

Updated by Karsten Dambekalns almost 16 years ago

+1 by looking

Actions #4

Updated by Michael Stucki almost 16 years ago

Fixed all available TYPO3 versions. See http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-002/ for more details. On that page you will also find a shell script that can automatically fix your system.

Actions

Also available in: Atom PDF