List of Changes for Laserfiche Forms 9.0.1 Hotfix 1014335

September 22, 2021 | KB: 1014335
Forms 9.0.1

Summary

Note: This patch is specific to Laserfiche Forms 9.0.1 Hotfix 1013283, and can not be applied to a Laserfiche Forms 9.0.1 (9.0.1.211) installation. If you are on Laserfiche Forms 9.0.1 (9.0.1.211), please upgrade to Laserfiche Forms 9.0.1 Hotfix 1013283 before applying this hotfix.

This article details the list of changes for Laserfiche Forms 9.0.1 Hotfix 1014335.

The following changes have been made to address the Laserfiche Forms Portal File Upload Vulnerability.

  • Public users no longer have the option to download a copy of the file that they uploaded.(339722)
  • Enhancements to prevent files types not in the "File extensions allowed" option from being uploaded. (298692)

The update includes the following files:

  • \Config\bin\EntityModels.dll (9.0.1.500)
  • \Forms\bin\E-Forms.dll (9.0.1.500)
  • \Forms\bin\EntityModels.dll (9.0.1.500)
  • \Forms\js\forms.js (Last modified on 9/17/2021)
  • \Forms\js\fileupload.js (Last modified on 9/17/2021)
  • \Forms\Views\Form\_FormLayout.cshtml (Last modified on 9/17/2021)

Resolution

Click the following link to download a ZIP file containing hotfix 1014335 for Laserfiche Forms 9.0.1 Hotfix 1013283.

KB1014335.zip

  1. Extract files from the ZIP file to a temporary location on the server hosting Laserfiche Forms 9.0.1 Hotfix 1013283.
  2. Create a backup of the existing files under "C:\Program Files (x86)\Laserfiche\Laserfiche Forms" corresponding to the ones provided in the ZIP file.
  3. Stop the Laserfiche Forms Routing Service.
  4. Copy the Forms and Config folders contained in this zip file to C:\Program Files (x86)\Laserfiche\Laserfiche Forms and merge with existing folders.
  5. Start the Laserfiche Forms Routing Service.

Related Links

Laserfiche Forms Portal File Upload Vulnerability

List of Changes for Laserfiche Forms 9.0.1 Hotfix 1013283

List of Changes for Laserfiche Forms 9.0.1

Release Notes for Laserfiche Forms 9.0.1