[TYPO3-dev] Security Warning

Michael Stucki michael at typo3.org
Wed Feb 8 11:46:29 CET 2006


Steffen Kamper wrote:

> My point was that there are some points of vulnerablity everyone should
> know so you can pretend users using php. That is one point more to think
> at when configuring BE Usergroup. On some Systems ext like
> php_page_content is needed for some add. features so you must hide it for
> the normal BE Users. Also the possibility to write TS.
> 
> Cause of that i wanted this discussion, maybe to show some more points of
> vulnarabilty - there are surely some more, and some ext should be awared
> too
> :)

Great work, Steffen! Will you post all of them on this public mailing list?

- michael
-- 
Think first, write later.




More information about the TYPO3-dev mailing list