Closed (works as designed)
Project:
SWF Tools
Version:
6.x-2.5
Component:
SWF Tools
Priority:
Normal
Category:
Support request
Assigned:
Unassigned
Reporter:
Created:
27 Nov 2009 at 01:08 UTC
Updated:
6 Mar 2010 at 19:05 UTC
Is there any security issue if I allow end users to upload .SWF file (not FLV), and then play it with the SWFTOOLS?
I only want user to upload the safe .SWF animation file, but am afraid of some malicious intent to embed some SWF file with damaging programming code....please help and advise what is the safest way to achieve this. Thanks/
Comments
Comment #1
ron williams commentedThe SWF Tools module is provided to display the appropriate swf player for various media types. It is not intended to 'check' swf's for malicious code, nor is it intended to allow upload and embed of SWF's. I'd recommend asking in the forums regarding this.