Hi,
I am trying to do a fileupload from a form, and it does not work, I am using the following code.
global $strDesc;
global $fileUpload;
global $fileUpload_name;
global $fileUpload_size;
global $fileUpload_type;
if ($cv != "")
{
$uploaddir = '/home/httpd/vhosts/ph1.ie/httpdocs/test/cvs/';
$uploadfile = $uploaddir . basename($_FILES['cv']['name']);
$filename = get_cfg_var( 'upload_tmp_dir' ) . '/' . $_FILES[ 'cv' ][ 'tmp_name' ];
echo $uploadfile . "\n";
$uploadfile = ".";
if (move_uploaded_file($filename, $uploadfile)) {
echo "File is valid, and was successfully uploaded.\n";
} else {
echo " Possible file upload attack!\n";
}
[code=php]
I keep getting "possible file upload attack"
any ideas? when i do a print of the file array i get this
[code=php]
Array ( [cv] => Array ( [name] => cv.doc [type] => application/msword [tmp_name] => /tmp/phpH2xgBm [error] => 0 [size] => 58880 ) )
[code=php]
and the folder i am writing to has the permissions 777
strange!!!!!
please help, getting desperate..........