Details

    • Type: Sub-task
    • Status: Closed
    • Priority: Blocker
    • Resolution: Fixed
    • Affects Version/s: 2.0
    • Fix Version/s: 2.0
    • Component/s: Repositories
    • Labels:
      None
    • Affected Branches:
      MOODLE_20_STABLE
    • Fixed Branches:
      MOODLE_20_STABLE

      Description

      List of problems found in repo/upload

      1/ you can not urldecode after clean_param - it does not make any sense because the urldecode completely sidesteps the cleaning
      2/ do not use file browser there
      3/ $_FILES[$elname]['name'] needs to cleaned, otherwise users will not be able to upload some files at all
      4/ file overriding is a problem there, if you have a picture in draft area already and you upload different picture with the same name the origianl one will change

        Gliffy Diagrams

          Attachments

            Activity

              People

              • Votes:
                0 Vote for this issue
                Watchers:
                0 Start watching this issue

                Dates

                • Created:
                  Updated:
                  Resolved:
                  Fix Release Date:
                  24/Nov/10