Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

Debian: New typo3 packages fix several vulnerabilities

BugsAlert Home > Debian: New typo3 packages fix several vulnerabilities
 
 

LinuxSecurity.com: Because of a not sufficiently secure default value of the TYPO3 configuration variable fileDenyPattern, authenticated backend users could upload files that allowed to execute arbitrary code as the webserver user.




Original Source: http://www.linuxsecurity.com/content/view/138527?rdf

Learn more about Debian: New typo3 packages fix several vulnerabilities
 
Tags: debian typo3 packages fix vulnerabilities

Related Items

      ContRay "search.cgi" Cross-Site Scripting Vulnerability

      Gentoo: ngIRCd Denial of Service

      Slackware update for cups

      Vuln: VideoLAN VLC Multiple Remote Code Execution Vulnerabilities

      Nucleus EUC-JP Cross-Site Scripting Vulnerability

      CVE-2008-4363 (deslock)

      Fedora update for duplicity

 

Pixel