>From the manual: "Handling file uploads Uploading multiple files Common Pitfalls Not validating which file you operate on may mean that users can access sensitive information in other directories. " What is meant by the above? How would you "validate" that you weren't operating on the wrong file? As far as I know, PHP puts the file in whatever directory you specify and that is where you would access the file... how could someone make it so they access information elsewhere? Chris
- [PHP] File Upload Cedric Veilleux
- [PHP] file upload Augusto Cesar Castoldi
- Re: [PHP] file upload Augusto Cesar Castoldi
- Re: [PHP] file upload Augusto Cesar Castoldi
- [PHP] file upload luis
- Re: [PHP] file upload maatt
- [PHP] file upload Boget, Chris
- [PHP] file upload dave go
- [PHP] file upload Wilbert Enserink
- RE: [PHP] file upload Adrian Ciutureanu
- Re: [PHP] file upload Wilbert Enserink
- [PHP] file upload Marcus
- Re: [PHP] file upload Slavomir Slizik
- [PHP] File Upload Gerard Samuel
- Re: [PHP] File Upload Philip Murray
- Re: [PHP] File Upload Gerard Samuel
- [PHP] File upload Andrzej Roszkowski