[quote:301102d68e][i:301102d68e]Originally posted by (SH)Saeed[/i:301102d68e]
[quote:301102d68e][i:301102d68e]Originally posted by masood[/i:301102d68e]
Even if you just provide FTP account, all user files are open to read by anyone with an FTP account :p
that means all db passwords as well in php files :p[/quote:301102d68e]
That's not true. If you set a users FTP root directory to /home/user then they can not read /home or any other directory outside of /home/user.[/quote:301102d68e]
Give me an FTP account on your server and I'll show you how
You don't need &FTP& to exploit this. There are many other ways :p
Unless someone uses the solution I have suggested, you CAN NOT PROTECT any files in user directories.
:-((((
[quote:301102d68e][i:301102d68e]Originally posted by masood[/i:301102d68e]
Even if you just provide FTP account, all user files are open to read by anyone with an FTP account :p
that means all db passwords as well in php files :p[/quote:301102d68e]
That's not true. If you set a users FTP root directory to /home/user then they can not read /home or any other directory outside of /home/user.[/quote:301102d68e]
Give me an FTP account on your server and I'll show you how
Unless someone uses the solution I have suggested, you CAN NOT PROTECT any files in user directories.
:-((((