VB Attachment Validation
Given the currently un-patched Windows vulnerability out there regarding rogue .wmf files, I have a question. Does VB actually check the code of the file supplied (i.e. through a gd call in PHP) or is simply checking the extension of the file?
If it simply checks the extension, is anyone one else, who allows file uploads, doing anything to screen files more securely?
|