Changeset 973

Show
Ignore:
Timestamp:
2007-10-04 10:57:49 (21 months ago)
Author:
wwalc
Message:

Fix for #1325 changed black list to white list approach, unified list of allowed extensions in all connectors

Location:
FCKeditor/trunk/editor/filemanager/connectors
Files:
5 modified

Legend:

Unmodified
Added
Removed
  • FCKeditor/trunk/editor/filemanager/connectors/asp/config.asp

    r914 r973  
    9898Set ConfigQuickUploadAbsolutePath       = CreateObject( "Scripting.Dictionary" ) 
    9999 
    100 ConfigAllowedExtensions.Add     "File", "" 
    101 ConfigDeniedExtensions.Add      "File", "html|htm|php|php2|php3|php4|php5|phtml|pwml|inc|asp|aspx|ascx|jsp|cfm|cfc|pl|bat|exe|com|dll|vbs|js|reg|cgi|htaccess|asis|sh|shtml|shtm|phtm" 
     100ConfigAllowedExtensions.Add     "File", "7z|aiff|asf|avi|bmp|csv|doc|flv|gif|gz|gzip|jpeg|jpg|mid|mov|mp3|mp4|mpc|mpeg|mpg|ods|odt|pdf|png|ppt|pxd|qt|ram|rar|rm|rmi|rmvb|rtf|sdc|sitd|swf|sxc|sxw|tar|tgz|tif|tiff|txt|vsd|wav|wma|wmv|xls|xml|zip" 
     101ConfigDeniedExtensions.Add      "File", "" 
    102102ConfigFileTypesPath.Add "File", ConfigUserFilesPath & "file/" 
    103103ConfigFileTypesAbsolutePath.Add "File", "" 
     
    105105ConfigQuickUploadAbsolutePath.Add "File", "" 
    106106 
    107 ConfigAllowedExtensions.Add     "Image", "jpg|gif|jpeg|png|bmp" 
     107ConfigAllowedExtensions.Add     "Image", "bmp|gif|jpeg|jpg|png|psd|tif|tiff" 
    108108ConfigDeniedExtensions.Add      "Image", "" 
    109109ConfigFileTypesPath.Add "Image", ConfigUserFilesPath & "image/" 
     
    119119ConfigQuickUploadAbsolutePath.Add "Flash", "" 
    120120 
    121 ConfigAllowedExtensions.Add     "Media", "swf|fla|jpg|gif|jpeg|png|avi|mpg|mpeg|mp(1-4)|wma|wmv|wav|mid|midi|rmi|rm|ram|rmvb|mov|qt" 
     121ConfigAllowedExtensions.Add     "Media", "aiff|asf|avi|bmp|flv|gif|jpeg|jpg|mid|mov|mp3|mp4|mpc|mpeg|mpg|png|qt|ram|rm|rmi|rmvb|swf|tif|tiff|wav|wma|wmv" 
    122122ConfigDeniedExtensions.Add      "Media", "" 
    123123ConfigFileTypesPath.Add "Media", ConfigUserFilesPath & "media/" 
  • FCKeditor/trunk/editor/filemanager/connectors/cfm/config.cfm

    r945 r973  
    101101        Config.QuickUploadAbsolutePath                  = StructNew() ; 
    102102 
    103         Config.AllowedExtensions["File"]                = "" ; 
    104         Config.DeniedExtensions["File"]                 = "html,htm,php,php2,php3,php4,php5,phtml,pwml,inc,asp,aspx,ascx,jsp,cfm,cfc,pl,bat,exe,com,dll,vbs,js,reg,cgi,htaccess,asis,sh,shtml,shtm,phtm" ; 
     103        Config.AllowedExtensions["File"]                = "7z,aiff,asf,avi,bmp,csv,doc,flv,gif,gz,gzip,jpeg,jpg,mid,mov,mp3,mp4,mpc,mpeg,mpg,ods,odt,pdf,png,ppt,pxd,qt,ram,rar,rm,rmi,rmvb,rtf,sdc,sitd,swf,sxc,sxw,tar,tgz,tif,tiff,txt,vsd,wav,wma,wmv,xls,xml,zip" ; 
     104        Config.DeniedExtensions["File"]                 = "" ; 
    105105        Config.FileTypesPath["File"]                    = Config.UserFilesPath & 'file/' ; 
    106106        Config.FileTypesAbsolutePath["File"]    = iif( Config.ServerPath eq "", de(""), de(Config.ServerPath & 'file/') ) ; 
     
    108108        Config.QuickUploadAbsolutePath["File"]  = Config.FileTypesAbsolutePath["File"] ; 
    109109 
    110         Config.AllowedExtensions["Image"]               = "png,gif,jpg,jpeg,bmp" ; 
     110        Config.AllowedExtensions["Image"]               = "bmp,gif,jpeg,jpg,png,psd,tif,tiff" ; 
    111111        Config.DeniedExtensions["Image"]                = "" ; 
    112112        Config.FileTypesPath["Image"]                   = Config.UserFilesPath & 'image/' ; 
     
    122122        Config.QuickUploadAbsolutePath["Flash"] = Config.FileTypesAbsolutePath["Flash"] ; 
    123123 
    124         Config.AllowedExtensions["Media"]               = "swf,fla,jpg,gif,jpeg,png,avi,mpg,mpeg,mp3,mp4,m4a,wma,wmv,wav,mid,midi,rmi,rm,ram,rmvb,mov,qt" ; 
     124        Config.AllowedExtensions["Media"]               = "aiff,asf,avi,bmp,flv,gif,jpeg,jpg,mid,mov,mp3,mp4,mpc,mpeg,mpg,png,qt,ram,rm,rmi,rmvb,swf,tif,tiff,wav,wma,wmv" ; 
    125125        Config.DeniedExtensions["Media"]                = "" ; 
    126126        Config.FileTypesPath["Media"]                   = Config.UserFilesPath & 'media/' ; 
  • FCKeditor/trunk/editor/filemanager/connectors/lasso/config.lasso

    r413 r973  
    5151                ), 
    5252                'AllowedExtensions' = map( 
    53                         'File' = array(), 
    54                         'Image' = array('jpg','gif','jpeg','png'), 
     53                        'File' = array('7z','aiff','asf','avi','bmp','csv','doc','flv','gif','gz','gzip','jpeg','jpg','mid','mov','mp3','mp4','mpc','mpeg','mpg','ods','odt','pdf','png','ppt','pxd','qt','ram','rar','rm','rmi','rmvb','rtf','sdc','sitd','swf','sxc','sxw','tar','tgz','tif','tiff','txt','vsd','wav','wma','wmv','xls','xml','zip'), 
     54                        'Image' = array('bmp','gif','jpeg','jpg','png','psd','tif','tiff'), 
    5555                        'Flash' = array('swf','fla'), 
    56                         'Media' = array('swf','fla','jpg','gif','jpeg','png','avi','mpg','mpeg') 
     56                        'Media' = array('aiff','asf','avi','bmp','flv','gif','jpeg','jpg','mid','mov','mp3','mp4','mpc','mpeg','mpg','png','qt','ram','rm','rmi','rmvb','swf','tif','tiff','wav','wma','wmv') 
    5757                ), 
    5858                'DeniedExtensions' = map( 
    59                         'File' = array('html','htm','php','php2','php3','php4','php5','phtml','pwml','inc','asp','aspx','ascx','jsp','cfm','cfc','pl','bat','exe','com','dll','vbs','js','reg','cgi','lasso','lassoapp','htaccess','asis','sh','shtml','shtm','phtm'), 
     59                        'File' = array(), 
    6060                        'Image' = array(), 
    6161                        'Flash' = array(), 
  • FCKeditor/trunk/editor/filemanager/connectors/php/config.php

    r944 r973  
    114114*/ 
    115115 
    116 $Config['AllowedExtensions']['File']    = array() ; 
    117 $Config['DeniedExtensions']['File']             = array('html','htm','php','php2','php3','php4','php5','phtml','pwml','inc','asp','aspx','ascx','jsp','cfm','cfc','pl','bat','exe','com','dll','vbs','js','reg','cgi','htaccess','asis','sh','shtml','shtm','phtm') ; 
     116$Config['AllowedExtensions']['File']    = array('7z', 'aiff', 'asf', 'avi', 'bmp', 'csv', 'doc', 'flv', 'gif', 'gz', 'gzip', 'jpeg', 'jpg', 'mid', 'mov', 'mp3', 'mp4', 'mpc', 'mpeg', 'mpg', 'ods', 'odt', 'pdf', 'png', 'ppt', 'pxd', 'qt', 'ram', 'rar', 'rm', 'rmi', 'rmvb', 'rtf', 'sdc', 'sitd', 'swf', 'sxc', 'sxw', 'tar', 'tgz', 'tif', 'tiff', 'txt', 'vsd', 'wav', 'wma', 'wmv', 'xls', 'xml', 'zip') ; 
     117$Config['DeniedExtensions']['File']             = array() ; 
    118118$Config['FileTypesPath']['File']                = $Config['UserFilesPath'] . 'file/' ; 
    119119$Config['FileTypesAbsolutePath']['File']= ($Config['UserFilesAbsolutePath'] == '') ? '' : $Config['UserFilesAbsolutePath'].'file/' ; 
     
    121121$Config['QuickUploadAbsolutePath']['File']= $Config['UserFilesAbsolutePath'] ; 
    122122 
    123 $Config['AllowedExtensions']['Image']   = array('jpg','gif','jpeg','png') ; 
     123$Config['AllowedExtensions']['Image']   = array('bmp','gif','jpeg','jpg','png','psd','tif','tiff') ; 
    124124$Config['DeniedExtensions']['Image']    = array() ; 
    125125$Config['FileTypesPath']['Image']               = $Config['UserFilesPath'] . 'image/' ; 
     
    135135$Config['QuickUploadAbsolutePath']['Flash']= $Config['UserFilesAbsolutePath'] ; 
    136136 
    137 $Config['AllowedExtensions']['Media']   = array('swf','fla','jpg','gif','jpeg','png','avi','mpg','mpeg') ; 
     137$Config['AllowedExtensions']['Media']   = array('aiff', 'asf', 'avi', 'bmp', 'flv', 'gif', 'jpeg', 'jpg', 'mid', 'mov', 'mp3', 'mp4', 'mpc', 'mpeg', 'mpg', 'png', 'qt', 'ram', 'rm', 'rmi', 'rmvb', 'swf', 'tif', 'tiff', 'wav', 'wma', 'wmv') ; 
    138138$Config['DeniedExtensions']['Media']    = array() ; 
    139139$Config['FileTypesPath']['Media']               = $Config['UserFilesPath'] . 'media/' ; 
  • FCKeditor/trunk/editor/filemanager/connectors/py/config.py

    r595 r973  
    107107#               Attention: It must end with a slash: '/' 
    108108 
    109 AllowedExtensions['File']               = [] 
    110 DeniedExtensions['File']                = ['html','htm','php','php2','php3','php4','php5','phtml','pwml','inc','asp','aspx','ascx','jsp','cfm','cfc','pl','bat','exe','com','dll','vbs','js','reg','cgi','htaccess','asis','sh','shtml','shtm','phtm', 'py', 'spy', 'pyw'] 
     109AllowedExtensions['File']               = ['7z','aiff','asf','avi','bmp','csv','doc','flv','gif','gz','gzip','jpeg','jpg','mid','mov','mp3','mp4','mpc','mpeg','mpg','ods','odt','pdf','png','ppt','pxd','qt','ram','rar','rm','rmi','rmvb','rtf','sdc','sitd','swf','sxc','sxw','tar','tgz','tif','tiff','txt','vsd','wav','wma','wmv','xls','xml','zip'] 
     110DeniedExtensions['File']                = [] 
    111111FileTypesPath['File']                   = UserFilesPath + 'file/'  
    112112FileTypesAbsolutePath['File']   = (not UserFilesAbsolutePath == '') and (UserFilesAbsolutePath + 'file/') or '' 
     
    114114QuickUploadAbsolutePath['File'] = FileTypesAbsolutePath['File'] 
    115115 
    116 AllowedExtensions['Image']              = ['jpg','gif','jpeg','png'] 
     116AllowedExtensions['Image']              = ['bmp','gif','jpeg','jpg','png','psd','tif','tiff'] 
    117117DeniedExtensions['Image']               = [] 
    118118FileTypesPath['Image']                  = UserFilesPath + 'image/'  
     
    128128QuickUploadAbsolutePath['Flash']= FileTypesAbsolutePath['Flash'] 
    129129 
    130 AllowedExtensions['Media']              = [ 'swf','fla','jpg','gif','jpeg','png','avi','mpg','mpeg' ] 
     130AllowedExtensions['Media']              = ['aiff','asf','avi','bmp','flv','gif','jpeg','jpg','mid','mov','mp3','mp4','mpc','mpeg','mpg','png','qt','ram','rm','rmi','rmvb','swf','tif','tiff','wav','wma','wmv'] 
    131131DeniedExtensions['Media']               = [] 
    132132FileTypesPath['Media']                  = UserFilesPath + 'media/'