Ticket #4553 (closed Bugs: fixed)

Opened 3 years ago

Last modified 2 years ago

Obscure attack can result in uploading of an arbitrary script on the PBX

Reported by: p_lindheimer Assigned to:
Priority: minor Milestone: 2.9
Component: System Recordings Version: 2.8-branch
Keywords: Cc:
Confirmation: Confirmed Distro:
Backend Engine: All Distro Ver:
Backend Ver: SVN Revision (if applicable):

Description

This is a SECURITY issue and as such, details are left out.

Most revisions affected.

Change History

09/23/10 13:28:14 changed by p_lindheimer

  • status changed from new to closed.
  • resolution set to fixed.

(In [10299]) fixes #4553 Security Issue

09/23/10 13:42:19 changed by p_lindheimer

(In [10300]) Merged revisions 10299 via svnmerge from http://svn.freepbx.org/modules/branches/2.8

........

r10299 | p_lindheimer | 2010-09-23 10:28:13 -0700 (Thu, 23 Sep 2010) | 1 line

fixes #4553 Security Issue

........

09/23/10 13:53:42 changed by p_lindheimer

(In [10301]) Merged revisions 10300 via svnmerge from http://www.freepbx.org/v2/svn/modules/branches/2.7

................

r10300 | p_lindheimer | 2010-09-23 10:42:19 -0700 (Thu, 23 Sep 2010) | 9 lines

Merged revisions 10299 via svnmerge from http://svn.freepbx.org/modules/branches/2.8

........

r10299 | p_lindheimer | 2010-09-23 10:28:13 -0700 (Thu, 23 Sep 2010) | 1 line

fixes #4553 Security Issue

........

................

09/23/10 14:18:30 changed by p_lindheimer

(In [10302]) Merged revisions 10301 via svnmerge from http://www.freepbx.org/v2/svn/modules/branches/2.6

................

r10301 | p_lindheimer | 2010-09-23 10:53:42 -0700 (Thu, 23 Sep 2010) | 16 lines

Merged revisions 10300 via svnmerge from http://www.freepbx.org/v2/svn/modules/branches/2.7

................

r10300 | p_lindheimer | 2010-09-23 10:42:19 -0700 (Thu, 23 Sep 2010) | 9 lines

Merged revisions 10299 via svnmerge from http://svn.freepbx.org/modules/branches/2.8

........

r10299 | p_lindheimer | 2010-09-23 10:28:13 -0700 (Thu, 23 Sep 2010) | 1 line

fixes #4553 Security Issue

........

................

................

09/23/10 14:26:01 changed by p_lindheimer

(In [10303]) Merged revisions 10302 via svnmerge from http://www.freepbx.org/v2/svn/modules/branches/2.5

................

r10302 | p_lindheimer | 2010-09-23 11:18:30 -0700 (Thu, 23 Sep 2010) | 23 lines

Merged revisions 10301 via svnmerge from http://www.freepbx.org/v2/svn/modules/branches/2.6

................

r10301 | p_lindheimer | 2010-09-23 10:53:42 -0700 (Thu, 23 Sep 2010) | 16 lines

Merged revisions 10300 via svnmerge from http://www.freepbx.org/v2/svn/modules/branches/2.7

................

r10300 | p_lindheimer | 2010-09-23 10:42:19 -0700 (Thu, 23 Sep 2010) | 9 lines

Merged revisions 10299 via svnmerge from http://svn.freepbx.org/modules/branches/2.8

........

r10299 | p_lindheimer | 2010-09-23 10:28:13 -0700 (Thu, 23 Sep 2010) | 1 line

fixes #4553 Security Issue

........

................

................

................

09/23/10 14:29:14 changed by p_lindheimer

(In [10304]) Merged revisions 10303 via svnmerge from http://www.freepbx.org/v2/svn/modules/branches/2.4

................

r10303 | p_lindheimer | 2010-09-23 11:26:00 -0700 (Thu, 23 Sep 2010) | 30 lines

Merged revisions 10302 via svnmerge from http://www.freepbx.org/v2/svn/modules/branches/2.5

................

r10302 | p_lindheimer | 2010-09-23 11:18:30 -0700 (Thu, 23 Sep 2010) | 23 lines

Merged revisions 10301 via svnmerge from http://www.freepbx.org/v2/svn/modules/branches/2.6

................

r10301 | p_lindheimer | 2010-09-23 10:53:42 -0700 (Thu, 23 Sep 2010) | 16 lines

Merged revisions 10300 via svnmerge from http://www.freepbx.org/v2/svn/modules/branches/2.7

................

r10300 | p_lindheimer | 2010-09-23 10:42:19 -0700 (Thu, 23 Sep 2010) | 9 lines

Merged revisions 10299 via svnmerge from http://svn.freepbx.org/modules/branches/2.8

........

r10299 | p_lindheimer | 2010-09-23 10:28:13 -0700 (Thu, 23 Sep 2010) | 1 line

fixes #4553 Security Issue

........

................

................

................

................

09/23/10 14:36:08 changed by p_lindheimer

(In [10305]) Merged revisions 10283-10304 via svnmerge from http://svn.freepbx.org/modules/branches/2.8

................

r10296 | p_lindheimer | 2010-09-22 08:59:28 -0700 (Wed, 22 Sep 2010) | 9 lines

Merged revisions 10295 via svnmerge from http://svn.freepbx.org/modules/branches/2.7

........

r10295 | p_lindheimer | 2010-09-22 08:53:43 -0700 (Wed, 22 Sep 2010) | 1 line

fixes #4551 namespace clash with IVR and VMBLAST messages

........

................

r10299 | p_lindheimer | 2010-09-23 10:28:13 -0700 (Thu, 23 Sep 2010) | 1 line

fixes #4553 Security Issue

................

09/23/10 14:49:35 changed by p_lindheimer

Published: