Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista
BugTraq in French
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
php upload vulnerability May 20 2004 06:29PM
peter mcTashatt (overflow neuf fr)


upload php vulnerability for $_FILES['userfile']['name'] can contain

string "../" if the name start with a "." with a fake raw http :

Content-Disposition: form-data; name="userfile";

filename="../../../test.html"

http://slythers.tcpteam.org/uploadphpvuln.txt

http://bugs.php.net/bug.php?id...

[ more ]  





 

Privacy Statement
Copyright 2008, SecurityFocus