Forum Moderators: phranque
that user got that file from somewhere
implications of uploads
disk space
virii
exploitation
trojans/backdoors/rootkits
no plain sailing when you allow users to upload, strict rules and file checking are required
The attachment will be within a db on the server. I can't think of a way that it can execute it self server side, from within a db, or can it?
if theres any additional precautions /methods i welcome them. i have to receive this stuff, form would be more convenient than email, it's the best option at the moment.
really appreaciate your comments, thanks