Jump to content

Resolved - Something that worries me a lot


Guest flowerz

Recommended Posts

Guest flowerz

Hi,

Since I upgraded my store to the latest V5 two weeks ago I have noticed something that worries me a lot

When looking at my stats in stat counter of pages visited I am getting the usual customers browsing and then a few times I am seeing a download link as below (real names changed) if I click on the link my image opens & with just a little know how you able to backtrack into the folders and get access to all images from my store this has happened in both Source folder & cache folder.

I have just added an index.html in each of the folders involved to stop back tracking I am sure this is vulnerability.

The links are showing like this

mysite.com/Store/images/source/My folder name/myPicture.jpg (Download)

mysite.com/Store/images/cache/my folder name/my picture.jpg (Download)

Has anyone experienced this before?

Look forward to your replies

Pam

Link to comment
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

×
×
  • Create New...