#25 File names can overwrite other resources

Avoinna
5 vuotta sitten avasi sindre · 0 kommenttia

When uploading a file it can overwrite other files, even those ondifferent levels due to lack of input validation. This is differentfrom uploading, as even without checking for file name, itshould be checked that it won’t overwrite another file.

When uploading a file it can overwrite other files, even those ondifferent levels due to lack of input validation. This is differentfrom uploading, as even without checking for file name, itshould be checked that it won’t overwrite another file.
sindre added this to the Required fixes milestone 5 vuotta sitten
sindre added the
webpy
label 5 vuotta sitten
sindre added the
bug
label 5 vuotta sitten
sindre added the
security misconfiguration
label 5 vuotta sitten
sindre modified the milestone from Required fixes to Optional vulnerabilities 5 vuotta sitten
Sign in to join this conversation.
Loading…
Peruuta
Tallenna
Sisältöä ei vielä ole.