Re: [Zope] Zope and security vulnerability: 20121106

2012-11-14 Thread Christopher N. Deckard
We are running Zope 2.13.10. (So this may not be too helpful.) We are testing the hotfix. This is the output in our event log. 2012-11-14T10:16:49 INFO Products.PloneHotfix20121106 Applied setHeader patch 2012-11-14T10:16:49 INFO Products.PloneHotfix20121106 Applied allow_module patch 2012-11-

Re: [Zope] path of a fileupload instance

2012-11-14 Thread robert rottermann
to my knowledge, for security reason no modern browser submits the path anymore. If you need the path, you have to create your own file uploader or use a tool like uploadify (http://www.uploadify.com) I *think* javascript gets you access to the full path. robert On 11/14/2012 08:35 AM, Kees de