S4E Mobile Logo

Unauthenticated Popup File Uploader Scanner

Popup Uploader includes an unauthenticated file upload vulnerability.

Short Info


Level

High

Single Scan

Single Scan

Can be used by

Asset Owner

Estimated Time

5 seconds

Time Interval

1 month 16 days

Scan only one

URL

Toolbox

Various web applications allow users to upload files (such as pictures, images, sounds, ...). Uploaded files may pose a significant risk if not handled correctly. A remote attacker could send a multipart/form-data POST request with a specially-crafted filename or mime type and execute arbitrary code.

Get started to protecting your digital assets