[Wylug-discuss] 777 access on an images directory
Mike Goodman
mike.goodman at zen.co.uk
Fri Oct 12 17:04:40 BST 2007
Phil Driscoll wrote:
> The 777/execution bit was not the issue I was warning you about. The problem
> is that the application allows upload of files into a directory which is
> served up by the web server.
But isn't that then the case for any directory containing files served
up by the web server? Sorry to be thick, but isn't it the permissions
which control who can upload files?
>
> Be afraid - be very afraid :)
Thanks, Phil. That'll help me sleep tonight. :) :)
>
> Cheers
MG
More information about the Wylug-discuss
mailing list