On Nov 26, 2008, at 9:11 AM, Matthew Macdonald-Wallace wrote:
Your best bet is to set the owner to the username your webserver runs
under and the group to user. Then set the permissions to the
following:
754
This gives the user full rights, the group read + execute and the
world read privileges although it will not work with all systems.
Thanks Matt.
Still confused on a few things:
PHP uploads to a temp directory and then you need a script to move
the file. In oscommerce, there is no way for someone to access the
upload scripts unless they have access to the protected admin
directory first. So, how do they get the bad stuff into an open
directory in the first place?
steve
____ The WDVL Discussion List from WDVL.COM ____
To Join wdvltalk, Send An Email To: mailto:[EMAIL PROTECTED] or
use the web interface http://e-newsletters.internet.com/discussionlists.html/
Send Your Posts To: wdvltalk@lists.wdvl.com
To change subscription settings, add a password or view the web interface:
http://intm-dl.sparklist.com/read/?forum=wdvltalk
________________ http://www.wdvl.com _______________________
You are currently subscribed to wdvltalk as: [EMAIL PROTECTED]
To unsubscribe send a blank email to [EMAIL PROTECTED]
To unsubscribe via postal mail, please contact us at:
Jupitermedia Corp.
Attn: Discussion List Management
475 Park Avenue South
New York, NY 10016
Please include the email address which you have been contacted with.