#25 File names can overwrite other resources

開啟中
sindre5 年之前建立 · 0 條評論

When uploading a file it can overwrite other files, even those ondifferent levels due to lack of input validation. This is differentfrom uploading, as even without checking for file name, itshould be checked that it won’t overwrite another file.

When uploading a file it can overwrite other files, even those ondifferent levels due to lack of input validation. This is differentfrom uploading, as even without checking for file name, itshould be checked that it won’t overwrite another file.
sindre 新增至Required fixes 里程碑 5 年之前
sindre added the
webpy
label 5 年之前
sindre added the
bug
label 5 年之前
sindre added the
security misconfiguration
label 5 年之前
sindre 5 年之前 修改了里程碑 Required fixesOptional vulnerabilities
登入 才能加入這對話。
Loading…
取消
儲存
尚未有任何內容