[Vtigercrm-commits] [Vtiger development] #8517: Contact image has not been displayed
Vtiger development
vtiger-tickets at trac.vtiger.com
Wed Apr 15 10:36:32 GMT 2015
#8517: Contact image has not been displayed
-----------------------+---------------------
Reporter: uma | Owner: manu
Type: defect | Status: closed
Priority: major | Milestone: 6.3.0
Component: vtigercrm | Version: 6.2.0
Severity: Medium | Resolution: fixed
Keywords: |
-----------------------+---------------------
Comment (by alanlord):
I note the fix you published for this is to use the filesMatch apache
directive to allow browsing/retrieval of image file types. In my opinion
this solution is sub-optimal.
* If a user uploads a file with an extension in uppercase this won't work.
* It will still effectively allow any browser session (non-logged in user)
to retrieve any of the allowed image file types from the storage
directory.
In the original mailing list another option was indicated which is much
better. It *never* directly accesses any file in the storage directory:
http://stackoverflow.com/questions/28316322/the-photos-dont-appear-after-
an-update-to-vtiger-6-2
--
Ticket URL: <http://trac.vtiger.com/cgi-bin/trac.cgi/ticket/8517#comment:4>
Vtiger development <http://trac.vtiger.com/>
Vtiger CRM
More information about the vtigercrm-commits
mailing list