NextCloud is also Accepting OCTET-STREAM Type of Documents instead of jpg or Imge Files Only

Disclosed: 2019-04-11 19:01:57 By rohit_coder To nextcloud
Unknown
Vulnerability Details
Summary: I noticed that NextCloud is accepting OCTET-STREAM Type of Files Where you have Background/Logo Upload Option. I Believe that NextCloud is Checking for Such Type of Files but i can upload application/octet-stream Type of Documents by Crafting a Special Type of File (In this case i created a .bat file and attached a image into it) and your system accepted that file. Please Check Snapshot for more info. How to Reproduce ------- 1. Go to this URL : settings/admin/theming 2. You will get a option Upload Background PIC 3. Now open your Chrome Console Network tab to see what type of file is it. 3. Download my attached file "background.bat" and try to upload it there 4. File will be accepted by NextCloud and you can see type of file is OCTET-STREAM in Networks tab of Chrome Console
Actions
View on HackerOne
Report Stats
  • Report ID: 271253
  • State: Closed
  • Substate: duplicate
  • Upvotes: 6
Share this report