[imp] IMP 2.2.5: some problems

Chuck Hagenbuch chuck@horde.org
Tue, 29 May 2001 18:11:05 -0400


Quoting Christopher Crowley <ccrowley@tulane.edu>:

> So I trouble shot it to these lines from compose.php3:
> 
> /*                      if (!is_uploaded_file(safe_file($file_upload)))
> {
>                                 break;  /* ignore attempt to spoof us;
> back
> to composing
>                         }
> */
> 
> 
> Some insight into the intention of this code would be appreciated.

It should prevent you from spoofing the file upload. Does it work if you take 
the safe_file() call out of there?

-chuck

--
Charles Hagenbuch, <chuck@horde.org>
Black and white and grey, all the shades of truth.