Malicious file getting deleted by file upload control
We are trying to upload a malicious EICAR file using pzMultiFilePath control in a pre-production Pega cloud environment. It's part of the security testing being conducted by the client to confirm malicious files on the Pega cloud server are quarantined and Pega cloud support is alerted.
However, we noticed that the malicious file doesn't get uploaded on the server at all. Can someone please confirm if there are any checks placed in the pzMultiFilePath control itself to identify and block malicious file upload requests?
Thanks in advance!
***Edited by Moderator Marije to add INC tags***