[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: Wordpress Valums Uploader - File Upload Vulnerability
- To: bugtraq@xxxxxxxxxxxxxxxxx
- Subject: Re: Wordpress Valums Uploader - File Upload Vulnerability
- From: fineuploader@xxxxxxxxxxxxx
- Date: Tue, 29 Jan 2013 13:18:53 GMT
This issue is NOT with the file uploader javascript client. If any uploaded
files are accessible without credentials, this is the fault of the developer
who wrote the server-side code and did not take proper security precautions.