XOOPS: XOOPS 220.127.116.11 Patch ReleasedPosted by: Mithrandiron 2005/3/23 19:15:40 9510 reads The XOOPS Core development team is pleased to announce that a patch addressing the vulnerability in the XoopsMediaUploader class has been released and is available in our Downloads Section
It contains three files:
/class/uploader.php - the new XoopsMediaUploader class, replacing the existing
/class/mimetypes.inc.php - a new file containing mimetypes and their extensions
/include/version.php - updates the version to 18.104.22.168
Upgrade Instructions: Upload the files to their respective folders, overwriting existing files.
Special thanks goes out to Pokleyzz for reporting this bug on sourceforge.net, to the Japanese community for reporting it a long time ago and to phppp for helping Skalpa addressing it. Also thank you to everyone testing this patch prior to its release.
Xoops 22.214.171.124 to 126.96.36.199 Patch (zip)
Xoops 188.8.131.52 to 184.108.40.206 Patch (tar.gz)
Xoops Core Developer