CodeIgniter Forums
FCKEditor integration: security issue - Printable Version

+- CodeIgniter Forums (https://forum.codeigniter.com)
+-- Forum: Archived Discussions (https://forum.codeigniter.com/forumdisplay.php?fid=20)
+--- Forum: Archived General Discussion (https://forum.codeigniter.com/forumdisplay.php?fid=21)
+--- Thread: FCKEditor integration: security issue (/showthread.php?tid=3780)



FCKEditor integration: security issue - El Forum - 10-21-2007

[eluser]Dionysius[/eluser]
Hi to all!
I use FCKEditor on my web-site with CI and it works on admin's page only (admin must login first to have access). Upload module is enabled.
I worry about security. It is possible to open html-pages from fckeditor directory. Can some malicious man to upload something to my server? What can I do to prevent this? How to protect upload.php by password?

Thanks


FCKEditor integration: security issue - El Forum - 10-22-2007

[eluser]Dionysius[/eluser]
The problem is solved by sessions.