XOOPS: XOOPS 18.104.22.168 Patch ReleasedPosted by: Mithrandiron 2005/3/23 19:15:40 9332 reads The XOOPS Core development team is pleased to announce that a patch addressing the vulnerability in the XoopsMediaUploader class has been released and is available in our Downloads Section
It contains three files:
/class/uploader.php - the new XoopsMediaUploader class, replacing the existing
/class/mimetypes.inc.php - a new file containing mimetypes and their extensions
/include/version.php - updates the version to 22.214.171.124
Upgrade Instructions: Upload the files to their respective folders, overwriting existing files.
Special thanks goes out to Pokleyzz for reporting this bug on sourceforge.net, to the Japanese community for reporting it a long time ago and to phppp for helping Skalpa addressing it. Also thank you to everyone testing this patch prior to its release.
Xoops 126.96.36.199 to 188.8.131.52 Patch (zip)
Xoops 184.108.40.206 to 220.127.116.11 Patch (tar.gz)
Xoops Core Developer