in reply to Re: multiple file upload and CGI
in thread multiple file upload and CGI
OT: I also find it interesting that I can do nothing with this field on the client side, pre-server validation with javascript for e.g.
I too have been bitten by this, but believe me it's a good idea. If this were not true, then any website you go to with Javascript turned on could have an invisible frame with a form and a file input button. Then a Javascript function could set the value to a known file location and submit it, and presto, some vital file from your hard drive has been whisked off to a server you don't know. I guess it could be less dangerous if it were read-only from scripts but even still...
|
|---|
| Replies are listed 'Best First'. | |
|---|---|
|
Re: [OT] File inputs and Javascript
by mpeters (Chaplain) on Jan 25, 2005 at 17:17 UTC | |
|
Re: [OT] File inputs and Javascript
by ryantate (Friar) on Jan 26, 2005 at 00:54 UTC |