Just for the sake of argument, if you were crazy enough to leave FCKEditor enabled to allow image uploads, do you think the following would leave you secure?
Change allowed file types in connectors/cfm config.cfm to:
//Allowed Resource Types
Config.ConfigAllowedTypes = "Image" ;
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~|
Want to reach the ColdFusion community with something they want? Let them know on the House of Fusion mailing lists
Archive:
http://www.houseoffusion.com/groups/cf-talk/message.cfm/messageid:324398Subscription:
http://www.houseoffusion.com/groups/cf-talk/subscribe.cfmUnsubscribe:
http://www.houseoffusion.com/cf_lists/unsubscribe.cfm?user=17837.14401.4