Make sure /admin/htmlarea/popups/file/ is protected from access from just anyone. From looking into the code. I think it will allow just anyone to upload files. If you dont need it just remove the directory.
More...
This is a discussion on HTML WYSIWYG Editor for Product Desc, MS1 2.2 within the New osCommerce Contributions forums, part of the osCommerce 2.2 Forums category; Make sure /admin/htmlarea/popups/file/ is protected from access from just anyone. From looking into the code. I think it will allow ...
Make sure /admin/htmlarea/popups/file/ is protected from access from just anyone. From looking into the code. I think it will allow just anyone to upload files. If you dont need it just remove the directory.
More...
Michael Sasek
osCMax Developer
osCmax installation service - Have our professionals install osCmax on your server - same day service!
osCmax 2.0 User Manual - the must have beginners guide to osCmax v2.0
Stay Up To Date with everything osCMax:
Free osCMax Newsletters - Security notices, New Releases, osCMax News
osCMax on Twitter - Up to the minute info as it happens. Know it first.
osCmax Documentation
Bookmarks