Re: PHP File Upload Security Hole - Still No Fix?
| From: | Johan Andersson | Date: | Wed, 06 Sep 2000 14:33:28 +0000 |
| Subject: | Re: PHP File Upload Security Hole - Still No Fix? | ||
| References: | 1 2 3 4 5 6 7 8 9 10 11 | Groups: | php.dev |
| Request: | Send a blank email to php-dev+get-32378@lists.php.net to get a copy of this message | ||
> Since you don't seem to believe a single thing I say, just try the bloody
> web page before posting again. Note particularly the difference between
> what it does with the 3rd and 4th hrefs.
>
The first time I really got into that with & in url's were in 1 year ago..
and I know exactly how it works and what it does. So I don't need to try it..
and that wasn't what I asked for.. I asked for you answer on WHY someone
should do like that and why it would be safer (even though the browser encodes it).
I just don't get the idea of how you're thinking in this. That's why I ask.