How to secure upload folder?
I have all my attachments in a /webroot/uploaded folder. The permission to the foler is drwxr-xr-x at the moment. However this does not allow me to upload any attachments. On the onther hand I fear to assign 777 to the folder, fearing that it might open a hole to exploit.
So I am wondering what is the proper way to secure the upload folder?
|