XOOPS: XOOPS 188.8.131.52 Patch ReleasedPosted by: Mithrandiron 2005/3/23 19:15:40 9358 reads The XOOPS Core development team is pleased to announce that a patch addressing the vulnerability in the XoopsMediaUploader class has been released and is available in our Downloads Section
It contains three files:
/class/uploader.php - the new XoopsMediaUploader class, replacing the existing
/class/mimetypes.inc.php - a new file containing mimetypes and their extensions
/include/version.php - updates the version to 184.108.40.206
Upgrade Instructions: Upload the files to their respective folders, overwriting existing files.
Special thanks goes out to Pokleyzz for reporting this bug on sourceforge.net, to the Japanese community for reporting it a long time ago and to phppp for helping Skalpa addressing it. Also thank you to everyone testing this patch prior to its release.
Xoops 220.127.116.11 to 18.104.22.168 Patch (zip)
Xoops 22.214.171.124 to 126.96.36.199 Patch (tar.gz)
Xoops Core Developer