#25 File names can overwrite other resources

Open
5 jaren geleden werd geopend door sindre · 0 opmerkingen

When uploading a file it can overwrite other files, even those ondifferent levels due to lack of input validation. This is differentfrom uploading, as even without checking for file name, itshould be checked that it won’t overwrite another file.

When uploading a file it can overwrite other files, even those ondifferent levels due to lack of input validation. This is differentfrom uploading, as even without checking for file name, itshould be checked that it won’t overwrite another file.
sindre added this to the Required fixes milestone 5 jaren geleden
sindre added the
webpy
label 5 jaren geleden
sindre added the
bug
label 5 jaren geleden
sindre added the
security misconfiguration
label 5 jaren geleden
sindre mijlpaal bewerkt van Required fixes Optional vulnerabilities 5 jaren geleden
Log in om deel te nemen aan deze discussie.
Laden…
Annuleren
Opslaan
Er is nog geen inhoud.