mirror of https://github.com/MISP/MISP
a380458d2e
- as discovered and reported by Egidio Romano of Minded Security - The site admin file upload tool allowed for unrestricted file upload that could lead to RCE - Fixed the file uploader to be much more restrictive - removed the interactive terms file upload |
||
---|---|---|
.. | ||
Behavior | ||
Datasource | ||
AppModel.php | ||
Attribute.php | ||
Bruteforce.php | ||
Dns.php | ||
Event.php | ||
EventBlacklist.php | ||
EventTag.php | ||
Job.php | ||
Log.php | ||
Post.php | ||
Regexp.php | ||
Role.php | ||
Server.php | ||
ShadowAttribute.php | ||
Tag.php | ||
Task.php | ||
Template.php | ||
TemplateElement.php | ||
TemplateElementAttribute.php | ||
TemplateElementFile.php | ||
TemplateElementText.php | ||
TemplateTag.php | ||
Thread.php | ||
ThreatLevel.php | ||
User.php | ||
Whitelist.php |