Closed (works as designed)
Project:
FCKeditor - WYSIWYG HTML editor
Version:
master
Component:
Code
Priority:
Critical
Category:
Bug report
Assigned:
Unassigned
Reporter:
Created:
6 Feb 2005 at 00:46 UTC
Updated:
4 Aug 2006 at 15:19 UTC
Doens't this module allow unfettered access to your filesystem? And if you install it on the web, shouldn't you remove the filebrowser and ssip directories?
Comments
Comment #1
ontwerpwerk commentedyes it does, however most of it is only in the files directory (or other configured directories) but it should not be used on systems where you do not trust the users at the moment