perfact::mpa Insecure Direct Object Reference

Discussion in 'News Aggregator' started by Packet Storm, 1 Mar 2016.

  1. Packet Storm

    Packet Storm Guest

    SySS GmbH found out that unauthorized users are able to download arbitrary files of other users that have been uploaded via the file upload functionality. As the file names of uploaded files are incremental integer values, it is possible to enumerate and download all uploaded files without any authorization.

    Continue reading...
     

Share This Page

Loading...