Arbitrary file upload
Reported by
khsakr2...@gmail.com,
Apr 30 2017
|
|
Issue descriptionChrome on Linux feed back tab doesn't check file type uploaded by the user, hence someone can upload php,exe malware files,...etc. attached screenshot were the defect occurs Regards
,
May 1 2017
Well issue is some one can upload reverse shells in exe or pdf files that migh get executed from your servers and compromise them |
|
►
Sign in to add a comment |
|
Comment 1 by kochi@chromium.org
, May 1 2017