Joomla! Discussion Forums



It is currently Thu Nov 26, 2009 3:18 am (All times are UTC )

 




Post new topic Reply to topic  [ 2 posts ] 
Author Message
Posted: Mon Aug 21, 2006 6:11 am 
User avatar
Joomla! Intern
Joomla! Intern
Offline

Joined: Thu Aug 18, 2005 1:33 pm
Posts: 84
Location: Sebastopol
Bugtraq ID:  19605
Class: Input Validation Error
CVE:
Remote: Yes
Local: No
Published: Aug 19 2006 12:00AM
Updated: Aug 19 2006 12:00AM
Credit: Discovery is credited to x0r0n@hotmail.com.
Vulnerable: CropImage CropImage 1.0 beta


#Fix:
1-)open admin.cropcanvas.php
2-)add this code before line 7

defined( '_VALID_MOS' ) or die( 'Direct Access to this location is not allowed.' );

Readmore:
http://www.securityfocus.com/archive/1/443762
http://www.securityfocus.com/bid/19605/info

_________________
Joomlaportal.ru News, articles and tutorials
Joomlaforum.ru Russian Joomla Support Forum
Member of the Russian Joomla Translation Team


Top
   
 
Posted: Mon Aug 21, 2006 6:34 am 
User avatar
Joomla! Master
Joomla! Master
Offline

Joined: Fri Aug 12, 2005 3:47 pm
Posts: 11690
Location: **Translation Matters**
FYI Cropimage is an abandonned project.
Last release was a beta for 451 in January 2005.

Only place to find it is on P.Lamont's private site Mamboxchange.

_________________
Jean-Marie Simonet / infograf · http://www.info-graf.fr · GMT +1
Qui vult dare parva non debet magna rogare.
---------------------------------
Joomla! Translation Coordination Team


Top
  E-mail  
 
Display posts from previous:  Sort by  
Post new topic Reply to topic  [ 2 posts ] 

Quick reply

 



Who is online

Users browsing this forum: No registered users and 5 guests


You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot post attachments in this forum

Jump to:  
Powered by phpBB © 2000, 2002, 2005, 2007 phpBB Group