The product stores raw content or supporting code under the web document root with an extension that is not specifically handled by the server.
Perform a type check before interpreting files.
Do not store sensitive information in files which may be misinterpreted.
Our security experts can help you identify and remediate CWE-433 vulnerabilities in your codebase.
Get Security Assessment