Other nomination
How to upload arbitrary file contents cross-domain
CORS lets a plain XMLHttpRequest POST cross-domain without preflight, so an attacker page can hand-build a multipart/form-data body and upload a file of chosen name and content to another site with no user interaction. It needs an upload endpoint that does not authenticate, and it exploits a specification quirk rather than a browser bug, so vendors will not patch it.
In the archive
- Nominated for the 2011 Top 10 Web Hacking Techniques
- Nominated for the 2012 Top 10 Web Hacking Techniques
Related sources
Tags
This page is the archive's own catalogue record. The research is the work of its author, first published at the original source. Preserved copies are kept so the citation survives its host.