Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Mike Lewis on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Hidden file upload

Status
Not open for further replies.

baza

Programmer
May 15, 2001
20
ES
Hi I am trying to upload flash files to the webserver using input type file.

the file I am uploading is a flash file and there are two parts to the file, the .swf and .flv

I can upload the files by having two input boxes and then uploading no problem, but I am looking for a way where the user selects the .swf file to upload and the site can upload the .swf and the .flv file at the same time. The files have the same name, so tried to do a substr of the file but the copy method will only upload files that have been passed from a form. The next thing I tried was having a disabled input with a bit of java to fill the input depending on what the user put in the first input. but still nothing.

is there a way of uploading a file without it being passed from a input

thanks in advance
 
Hi

You can not do that for security reasons. Only the files manually selected by the visitor are uploaded. Otherwise your password files would quickly become public information...

Feherke.
 
why would the password file be public knowledge
 
the upload page is a protected admin page that only certain users can access
 
Hi

I say that uploading a file from a machine without the accept of the machine's owner is a security issue. Today there is no browser with such security issue. But even if such browser would let you to accomplish your idea, you would not be happy because the same security issue would make it possible for crackers to get random files from your machine too.

Feherke.
 
@baza

feherke is, of course, absolutely right. this would be a bad security hole.

however it is possible to do what you want with some installed client-side services. a browser toobar might work, or maybe an hta file (only for IE).
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top