Security News > 2015 > March > eBay Fixes File Upload and Patch Disclosure Bugs (Threatpost)
2015-03-30 17:41
eBay has fixed a pair of security vulnerabilities in its site that could enable attackers to upload executable files disguised as benign file types, construct full path URLs and then point victims to them through drive-by download attacks. The first bug resulted from the failure of an eBay page to check the headers of image files uploaded by […]
News URL
http://threatpost.com/ebay-fixes-file-upload-and-patch-disclosure-bugs/111898