New issue
Advanced search Search tips

Issue 716943 link

Starred by 2 users

Issue metadata

Status: WontFix
Owner: ----
Closed: May 2017
EstimatedDays: ----
NextAction: ----
OS: Linux
Pri: 3
Type: Bug



Sign in to add a comment

Arbitrary file upload

Reported by khsakr2...@gmail.com, Apr 30 2017

Issue description

Chrome on Linux feed back tab doesn't check file type uploaded by the user, hence someone can upload php,exe malware files,...etc.
attached screenshot were the defect occurs

Regards
 
Google.png
145 KB View Download

Comment 1 by kochi@chromium.org, May 1 2017

Status: WontFix (was: Unconfirmed)
What do you think is wrong with uploading any file?
How to treat that file is matter of the server that accepts file uploads,
and nothing to do with Chrome or Chromium browser.
Well issue is some one can upload reverse shells in exe or pdf files that
migh get executed from your servers and compromise them

Sign in to add a comment