【fckeditor 漏洞】fckeditor配置文件上传路径与允许上传文件

更新时间:2016-03-13    来源:元旦图片    手机版     字体:

【www.bbyears.com--元旦图片】

fckeditor配置文件上传路径与允许上传文件
/在找你fckeditor所在上当editorfilemanagerbrowserdefaultconnectorsphp文件进行修改,
$config["userfilespath"] = "/upload/" ;//配置文件上传目录
$config["allowedextensions"]["file"] = array() ;

//不允许上传文件类型
$config["deniedextensions"]["file"]  = array("html","htm","php","php2","php3","php4","php5","phtml","pwml","inc","asp","aspx","ascx","jsp","cfm","cfc","pl","bat","exe","com","dll","vbs","js","reg","cgi","htaccess","asis","sh","shtml","shtm","phtm") ;

 


//允许上传图片类型
$config["allowedextensions"]["image"] = array("jpg","gif","jpeg","png","bmp") ;


$config["deniedextensions"]["image"] = array() ;

 

//允许上传flash文件类型

$config["allowedextensions"]["flash"] = array("swf","fla") ;


$config["deniedextensions"]["flash"] = array() ;

 

//允许上传视频类型

$config["allowedextensions"]["media"] = array("swf","fla","jpg","gif","jpeg","png","avi","mpg","mpeg") ;

 

本文来源:http://www.bbyears.com/ps/22369.html

猜你感兴趣