[Reddes.bvs-tech] RES: [bvstech] RES: RES: Problema al subir fichero despues de aplicar parches de seguridad LILDBI - WEB 1.7b

Moura, Wilson Silva (BIR) mourawil at bireme.ops-oms.org
Tue May 21 15:59:41 BRST 2013


Hola Victor,

Por favor, asegúrese de que los ajustes del directorio temporal en el archivo php.ini están correctos (como se muestra abajo):

;upload_tmp_dir =

Esta és la configuración estándar del archivo php.ini para el directorio temporal.

Caso ha cambiado la configuración de esta variable para un otro directorio, asegúrese se el path del directorio que se informó está correcto.

Nota: Reinicie el servicio del web server siempre que hacer modificaciones en el archivo php.ini

Saludos,

Wilson Moura
Analista de Sistemas
Rede de Suporto Tecnico - RST
Fone: +55 11 5576-9838
BIREME/OPAS/OMS<http://new.paho.org/bireme/>
________________________________
De: bvs.technical.support-bounces at listas.bireme.br [bvs.technical.support-bounces at listas.bireme.br] em nome de Victor Ricardo Díaz [victorr at infomed.sld.cu]
Enviado: terça-feira, 30 de abril de 2013 11:22
Para: Mori, Marcos (BIR); Marcos Luis Mori; Bvs.technical.support at bireme.org
Assunto: [bvstech] Problema al subir fichero despues de aplicar parches de seguridad LILDBI - WEB 1.7b

Hola a todos, despues aplicar los procedimientos de los parches de seguridad según http://wiki.reddes.bvsalud.org/index.php/LILDBI-WEB-proteccion el lildbi-web no me esta importando los ficheros ISO.

- El lildbi-web esta instalado en Linux Debian, Apache2 y PHP Version 5.2.6-1+lenny16

Pasos para reproducir el error:

1 - http://lildbi.couchdb.sld.cu/lildbi/index_es.htm

2 - Administración de la base de datos<UrlBlockedError.aspx>

3 - Entro al sistema como documentalista.

4 - En la interfaz de Administración del documentalista entro al menu Utilitario -> Importar y en el Paso 1 al importar el .iso devuelve el sgte error:

Diretório temporário não encontrado.

Saludos
Victor

----- Original Message -----
From: Mori, Marcos (BIR)<mailto:morimarc at bireme.ops-oms.org>
To: Victor Ricardo Díaz<mailto:victorr at infomed.sld.cu> ; Marcos Luis Mori<mailto:marcos.mori at bireme.org> ; Bvs.technical.support at bireme.org<mailto:Bvs.technical.support at bireme.org>
Sent: Friday, April 19, 2013 3:30 PM
Subject: RES: LILDBI 1.7a Hackeado

Victor, mas esa instancia está con el patch de vulnerabilidad instalado?

http://wiki.reddes.bvsalud.org/index.php/LILDBI-WEB-proteccion

Saludos,




Marcos Luis Mori
RST/MTI
BIREME/OPS/OMS

------------------------

Mi Nuevo email: morimarc at paho.org<mailto:morimarc at paho.org>



Siga-nos no twitter: https://twitter.com/ComunidadRedDes/

Curta a nossa página: https://www.facebook.com/ComunidadRedDes



________________________________
De: Victor Ricardo Díaz [victorr at infomed.sld.cu]
Enviado: terça-feira, 16 de abril de 2013 15:50
Para: Marcos Luis Mori
Assunto: LILDBI 1.7a Hackeado

Hola Marco aquí te envio el reporte:

#- Started in 2013-04-16 13:41:34 ----
Yzk5c2hlbGxAY2N0ZWFtLnJ1       in line:1996  htdocs/lildbi/e/admin/files/kjm.php
#- Started in 2013-04-16 13:42:55 ----
Yzk5c2hlbGxAY2N0ZWFtLnJ1       in line:2     /srv/woody/bvs/cumed/report.txt
Yzk5c2hlbGxAY2N0ZWFtLnJ1       in line:1996  /srv/woody/bvs/cumed/htdocs/lildbi/e/admin/files/kjm.php

Saludos
Victor

IMPORTANT: This transmission is for use by the intended
recipient and it may contain privileged, proprietary or
confidential information. If you are not the intended
recipient or a person responsible for delivering this
transmission to the intended recipient, you may not
disclose, copy or distribute this transmission or take
any action in reliance on it. If you received this transmission
in error, please dispose of and delete this transmission.

Thank you.

IMPORTANT: This transmission is for use by the intended
recipient and it may contain privileged, proprietary or
confidential information. If you are not the intended
recipient or a person responsible for delivering this
transmission to the intended recipient, you may not
disclose, copy or distribute this transmission or take
any action in reliance on it. If you received this transmission
in error, please dispose of and delete this transmission.

Thank you.

IMPORTANT: This transmission is for use by the intended
recipient and it may contain privileged, proprietary or
confidential information. If you are not the intended
recipient or a person responsible for delivering this
transmission to the intended recipient, you may not
disclose, copy or distribute this transmission or take
any action in reliance on it. If you received this transmission
in error, please dispose of and delete this transmission.

Thank you.




IMPORTANT: This transmission is for use by the intended
recipient and it may contain privileged, proprietary or
confidential information. If you are not the intended
recipient or a person responsible for delivering this
transmission to the intended recipient, you may not
disclose, copy or distribute this transmission or take
any action in reliance on it. If you received this transmission
in error, please dispose of and delete this transmission. 

Thank you.

-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://listas.bireme.br/pipermail/reddes.bvs-tech/attachments/20130521/37620da3/attachment.html 


More information about the Reddes.bvs-tech mailing list