Quantcast
Channel: Software Testing Forums
Viewing all articles
Browse latest Browse all 11978

Seasonal Contests | BOTM: Autodesk accepting unsupported files which are renamed

$
0
0
Action Performed:

1. Open Test url
2. Login with credential provided
3. Click on "My Uploads" button
4. Click on "Publish a new product" link
5.Click "Continue" button on the page appears
6. Select any language and add.
7. Fill the Application information section with required details.
8. File Uploading tab appears.
9. Click on "Choose File" button. ( Allowed extensions given as zip, msi & pdf only)
10. Do not select any file from above step9. Instead go to my computer and select kmk.mp3 file.
11. rename the mp3 file to kmk.pdf
12. File name changes to kmk.pdf.mp3 ( this is still an mp3 file which play perfectly in any audio player)
13. Go to step 9 and select the above file(kmk.pdf.mp3) created in step 12.
14. Observe that application accepts this file.


Expected Result:
Submit App should not accept a renamed unsupported file for publishing.

Actual Result:
Submit App is accepting renamed unsupported file formats for publishing.
Users can rename any file to get uploaded for publishing, this include virus files also.

Rename any file in the system to allowed extensions ie., msi. pdf
for example:
flower.jpg can be rename to flower.pdf.jpg and uploaded to site.
flower.mp3 can be renamed to flower.msi.mp3 and uploaded to site.
Image

Viewing all articles
Browse latest Browse all 11978

Trending Articles