View Single Post
Old 10-18-2012, 01:52 AM   PM User | #2
DrDOS
Senior Coder

 
Join Date: Sep 2010
Posts: 1,231
Thanks: 11
Thanked 156 Times in 156 Posts
DrDOS is infamous around these parts
You need to use an application which can read the actual file header while it's still a tmp_name file and only allow ones with the proper header to be
moved. You can also check the extension as well.
DrDOS is offline   Reply With Quote