[TYPO3-dev] [ANN] TYPO3 Security Bulletin TYPO3-20061220-1: Remote Command Execution in TYPO3

Benjamin Mack bmack at kirix.com
Thu Dec 21 10:36:30 CET 2006


Hey,

AFAIK the unsued versions should be put in a separate directory outside 
the HTML-root-directory. So, nobody can touch the files since they are 
not accessable.

greetings,
benni.
-SDG-


Martin Ficzel wrote:
> is it also recommended to delete unused (not symlinked) versions of the
> typo3 source wich are on the webserver ?
> 
> regards Martin
> _______________________________________________
> TYPO3-dev mailing list
> TYPO3-dev at lists.netfielders.de
> http://lists.netfielders.de/cgi-bin/mailman/listinfo/typo3-dev
> 




More information about the TYPO3-dev mailing list