12 Mar
2004
12 Mar
'04
08:45
Hi,
I'm working on a php script to upload user supplied jpg photos to my server.
What are the security issues involved when allowing users to upload files to my server like this?
--> You should restrict the file size in the HTML form and additionally by checking the limit in the PHP script. Otherwise someone could crash your server by filling up your harddisk until 0 bytes are left. Cheers, Armin -- Am Hasenberg 26 office: Institut für Atmosphärenphysik D-18209 Bad Doberan Schloss-Straße 6 Tel. ++49-(0)38203/42137 D-18225 Kühlungsborn / GERMANY Email: schoech@iap-kborn.de Tel. +49-(0)38293-68-102 WWW: http://armins.cjb.net/ Fax. +49-(0)38293-68-50