[Wylug-discuss] 777 access on an images directory

Mike Goodman mike.goodman at zen.co.uk
Fri Oct 12 17:04:40 BST 2007


Phil Driscoll wrote:

> The 777/execution bit was not the issue I was warning you about. The problem 
> is that the application allows upload of files into a directory which is 
> served up by the web server.
But isn't that then the case for any directory containing files served 
up by the web server? Sorry to be thick, but isn't it the permissions 
which control who can upload files?

> 
> Be afraid - be very afraid :)
Thanks, Phil. That'll help me sleep tonight. :) :)
> 
> Cheers

MG




More information about the Wylug-discuss mailing list