Changes for page Application_MoinMoin

Last modified by Nicolas Gregoire on 2012/01/29 17:56

From version 1.1 Icon
edited by Nicolas Gregoire
on 2012/01/24 21:10
Change comment: There is no comment for this version
To version Icon 2.1 Icon
edited by Nicolas Gregoire
on 2012/01/24 21:10
Change comment: There is no comment for this version

Summary

Details

Icon Page properties
Content
... ... @@ -1,5 +1,6 @@
1 -By default, the 'allow_xslt' configuration option is set to False. if this option is set to True, then "read/write/overwrite arbitrary path/file as the moin process uid/gidarbitrary" is possible. This is by inserting then displaying wiki pages containing XSLT code.
1 +By default, the 'allow_xslt' configuration option is set to False. if this option is set to True, then "read/write/overwrite arbitrary path/file as the moin process uid/gidarbitrary" is possible. This is triggered by inserting then displaying wiki pages containing XSLT code.
2 2  
3 +
3 3  This was documented in version 1.9.3 :
4 4  http://moinmo.in/SecurityFixes
5 5  http://hg.moinmo.in/moin/1.9/rev/99e2309a7ec0