Hello all
I am currently creating a website that will be utilizing PHP, especially the administrator control panel. The administrator will be able to upload new files and to the server through these PHP scripts into designated folders. A concern came about to me the other day that got me confuse. The PHP pages will be either protect by another login script with cookie information or by .htaccess. But what will protect the folders that will contain files the admin uploaded for the general public to view. For example the site contains a picture gallery that is open to the public to see. The admin uploaded the file into the folder, where that folder was probably set to CHMOD 777. By having this folder set to write, does this allow other visitors to place files in there. I hope I explain this clearly. Please respond very confuse person here![]()






Bookmarks