This time, a user went to the upload function of the photo album...
Decided to save the source code... Updated his copy to allow an additional dropdown category of /../../../../../..
By changing:
Code
code:
And then opening his edited .html file in his browser, was able to upload a image to my startup group in my user profile 8)'... or to my root drive etc...
I know this is partly due to my security of IIS & Win2k... But even if I disable the upload function, a user could enable it on his copy of the html... or for that fact just modify the html, and use it to upload anywhere...
Were also working on seeing if he modifies his file enough, if he can' upload files other than images to my system...
Donate to UBBDev today to help aid in Operational, Server and Script Maintenance, and Development costs.
Please also see our parent organization VNC Web Services if you're in the need of a new UBB.threads Install or Upgrade, Site/Server Migrations, or Security and Coding Services.