All Questions
2 questions
8votes
2answers
2kviews
What are the potential vulnerabilities of allowing a large http body size?
With NGINX and PHP I am allowing 5GB files to be 'uploaded' to my server although they will not be downloaded unless they are 'legitimate' (that is for another question ;)). I was wondering is this is ...
1vote
1answer
711views
Forcing response headers
I'm testing a particular vulnerability box since yesterday and I came with one rather strange problem that I didn't expect. Lets say a vulnerable web-application offer image file upload. The image ...