MISP/app/Model
iglocska a380458d2e Fixed a security issue with the site admin file uploader
- as discovered and reported by Egidio Romano of Minded Security

- The site admin file upload tool allowed for unrestricted file upload that could lead to RCE
- Fixed the file uploader to be much more restrictive
- removed the interactive terms file upload
2015-11-13 23:48:29 +01:00
..
Behavior Fix to a serious bug with adding attributes via the API and performance fixes 2015-09-07 10:06:34 +02:00
Datasource
AppModel.php Improved logging, fixes #695 2015-11-08 22:35:46 +01:00
Attribute.php Fixes to several issues, fixes #693 2015-10-21 23:44:07 +02:00
Bruteforce.php
Dns.php
Event.php Fixed an issue where a linebreak in an event info would break the CSV export, fixes #710 2015-11-10 13:45:40 +01:00
EventBlacklist.php progress on several issues 2015-09-15 15:11:08 +02:00
EventTag.php
Job.php
Log.php Improved logging, fixes #695 2015-11-08 22:35:46 +01:00
Post.php Complete rework of the ZeroMQ implementation 2015-06-29 08:56:45 +02:00
Regexp.php
Role.php Upgrade to CakePHP 2.7, fixes #684 2015-10-09 15:59:25 +02:00
Server.php Fixed a security issue with the site admin file uploader 2015-11-13 23:48:29 +01:00
ShadowAttribute.php Reverted change in proposal file storage path that wasn't needed 2015-10-22 09:51:31 +02:00
Tag.php Tagging added to the API 2015-10-30 16:28:51 +01:00
Task.php
Template.php
TemplateElement.php
TemplateElementAttribute.php
TemplateElementFile.php
TemplateElementText.php
TemplateTag.php
Thread.php
ThreatLevel.php
User.php Fixed an issue where PGP keys that are set to never expire show up as expired 2015-11-12 09:46:33 +01:00
Whitelist.php Upgrade to CakePHP 2.7, fixes #684 2015-10-09 15:59:25 +02:00