Page 1 of 1

tiny MCE browser not loading image / file manager files

Posted: Fri Jan 11, 2008 6:46 pm
by factor1
So I have several sites running CMSms V. 1 1.1.3.1

Most of them using tiny MCE. One issue, they wont load or display any images in the "browse server" window. No images or files.

Any thoughts? I have tried going to the 002 file creation mask with no avail.  Id go back to FCK, but its not mac friendly. And many of my clients use mac.


thanks.

Re: tiny MCE browser not loading image / file manager files

Posted: Fri Jan 11, 2008 7:11 pm
by nivekiam
I'm sure someone else will come by advising you to upgrade, but you should really upgrade to the latest version of CMSms.  There was a flaw fixed in TinyMCE that a hacker can exploit.

That being said it appears you can, if you have the latest version of the FCKeditorX module, just replace the FCKeditor with the latest version: http://www.fckeditor.net/

I tested it earlier this morning and it appears to work: http://forum.cmsmadesimple.org/index.ph ... l#msg90855

Again I'm running the current version of CMSms 1.2.3 and that was with version 1.0.3 of the FCKeditorX module (the last release was 2006-12

Re: tiny MCE browser not loading image / file manager files

Posted: Fri Jan 11, 2008 7:34 pm
by Pierre M.
nivekiam wrote: I'm sure someone else will come by advising you to upgrade, but you should really upgrade to the latest version of CMSms.  There was a flaw fixed in TinyMCE that a hacker can exploit.
Yes. factor1, upgrade to the latest stable official release. Unless you want to shoot in your foot.

Pierre M.

Re: tiny MCE browser not loading image / file manager files

Posted: Fri Jan 11, 2008 7:39 pm
by factor1
is my version that much of a risk?

I was holding off on upgrading a few site for version 2.0.


So I can simply replace the FCk editor files and thats it? or is there modification needed elsewhere?

thanks.

Re: tiny MCE browser not loading image / file manager files

Posted: Fri Jan 11, 2008 7:42 pm
by factor1
i also just figured out, that my issue is only on sites on the same server. We have 2 servers, and the other server is fine. anyone know what PHP extension is needed for this piece to work. Both servers are php 5, and run CMSms fine other than this single issue.

Re: tiny MCE browser not loading image / file manager files

Posted: Fri Jan 11, 2008 8:14 pm
by nivekiam
Yes your version is that much at risk.  There is a major flaw in the version of TinyMCE you are running.  Your site can get hacked because of it.

http://blog.cmsmadesimple.org/2008/01/0 ... imple-123/

http://secunia.com/advisories/28285/

http://secwatch.org/advisories/1019900/

I would upgrade first and see if that fixes the problem.  It could simply be a corrupt file.

Re: tiny MCE browser not loading image / file manager files

Posted: Mon Jan 14, 2008 10:45 pm
by factor1
So I upgraded to the newest CMS. Still, no image browser on this server. Anyone know what PHP extension is needed for this function work? I think thats the issue.

Re: tiny MCE browser not loading image / file manager files

Posted: Mon Jan 14, 2008 10:55 pm
by nivekiam
I would create a phpinfo page on a site for each server and compare the differences between the working server and the one where it doesn't work.


Re: tiny MCE browser not loading image / file manager files

Posted: Mon Jan 14, 2008 11:00 pm
by factor1
any idea if im looking for an extension difference? or something else.

Re: tiny MCE browser not loading image / file manager files

Posted: Mon Jan 14, 2008 11:24 pm
by nivekiam
No idea.  At this point I'd start comparing what's different between the two servers, PHP settings, files, etc.

I'd probably use Beyond Compare (http://www.scootersoftware.com/) or some similar file comparison software to make sure there aren't any differences between one TinyMCE install and another.

Re: tiny MCE browser not loading image / file manager files

Posted: Mon Jan 14, 2008 11:33 pm
by factor1
thanks.

Yes, I did two fresh installs, one on each server, still no go. I will give this a check so Im not comparing tons of info.