Friday, February 25, 2011

Re: any way to omit app/webroot when request image file or directory inside it

thanks Miles J

But on top of that, anyone can see that you are sing Cake by checking
your form structure, or that you are using named params.

I already get over that by using $this->params['form'] to get the data from users 

On 24 February 2011 21:30, Miles J <mileswjohnson@gmail.com> wrote:
You can try setting up some apache mod_rewrite rules.

But on top of that, anyone can see that you are sing Cake by checking
your form structure, or that you are using named params.

On Feb 24, 9:52 am, mohammad Al-Ani <alani.moham...@gmail.com> wrote:
> hi all..
>
> hope you do well
>
> I use cakephp from along and I faced a problem that I think it's a security
> issue
>
> when I request any file or directory that settle inside webroot directory.
> The URL automatically show the app/wedroot slug
>
> ex:
>
> request
>
>    * *www.mydomian.com/css/main.css
>
> change in browser to
>
>    www.mydomian.com/*app/webroot*/css/main.css
>
> I thing this shows up that I used cakephp. and I find it unprofessional way
> to leave such behavior
>
> any suggestions, idea...
>
> thanks for your time : )

--
Our newest site for the community: CakePHP Video Tutorials http://tv.cakephp.org
Check out the new CakePHP Questions site http://ask.cakephp.org and help others with their CakePHP related questions.


To unsubscribe from this group, send email to
cake-php+unsubscribe@googlegroups.com For more options, visit this group at http://groups.google.com/group/cake-php



--
محمد العاني

--
Our newest site for the community: CakePHP Video Tutorials http://tv.cakephp.org
Check out the new CakePHP Questions site http://ask.cakephp.org and help others with their CakePHP related questions.
 
 
To unsubscribe from this group, send email to
cake-php+unsubscribe@googlegroups.com For more options, visit this group at http://groups.google.com/group/cake-php

No comments: