RE: Issue with in_array() [strange] 10-29-2013, 12:48 AM
#31
(10-29-2013, 12:34 AM)1llusion Wrote:be aware it doesn't save the files on the web server itselves(10-29-2013, 12:26 AM)hellomen Wrote: it is accepting: image/jpg image/jpeg and image/gif which are mime types
all other types are yet blocked out...
Unless you changed the way you check for this stuff, it is still vulnerable.
Best explanation is here (also with good pointers): http://security.stackexchange.com/questi...pload-form
it saves it in a database those vulnerabilities are for webserver savement
the BLOB on a database also only allows images so whenever the user tries to bypass part one the database says hehe this is not worthly for the blob row

![[Image: 120x240.gif]](http://www.gomezpeerzone.com/wp-content/uploads/2011/11/120x240.gif)
![[+]](https://sinister.ly/images/modern/collapse_collapsed.png)
sorry, when talking about file uploads I automatically assume you are saving them 