rejetto forum

Security problem when uploading to seured diretory

Guest · 3 · 6438

0 Members and 1 Guest are viewing this topic.

Rootarded

  • Guest
Hello.

When upload is allowed to a real folder and the folder itself is password protected, it is possible to bypass the authentication by creating your own HTML form and submitting the files. I've tested and confirmed this problem with version 2.1d (088).


Offline rejetto

  • Administrator
  • Tireless poster
  • *****
    • Posts: 13523
    • View Profile

Offline rejetto

  • Administrator
  • Tireless poster
  • *****
    • Posts: 13523
    • View Profile
ideally, the system would be ok.
Scenario: I may allow upload for anyone, so i can let them put files with a special form, then i can access myself (and only me) that folder, to see the uploaded files. It may, in this sense, be considered a feature.

Realistically, most people wouldn't expect such behaviour (usabilty flaw), thus it could result in a security issue.
I will change the behaviour from next build, and "access" rights will be checked on an upload, not only "upload" rights.