Re: Re: [Fwd: (SRADV00001) Arbitrary filedisclosurethrough PHP file upload]
| From: | Stanislav Malyshev | Date: | Tue, 05 Sep 2000 06:33:08 +0000 |
| Subject: | Re: Re: [Fwd: (SRADV00001) Arbitrary filedisclosurethrough PHP file upload] | ||
| References: | 1 | Groups: | php.dev php.general |
| Request: | Send a blank email to php-dev+get-32086@lists.php.net to get a copy of this message | ||
RC>> Sorry to be replying to myself, but:
RC>>
RC>> Would this work for most users, without having to patch, to make sure
RC>> they are operating on a user uploaded file?
It would. But aren't these things supposed to be _easy_ in PHP?
--
Stanislav Malyshev stas@zend.com http://www.zend.com/
+972-3-6139665 ext.106