Hi all,
I want to get a better picture of security related issues with phpwcms. I did not succeed to find a clear answer for this in the forums.
In the installation manual of pappnase, I read:
Folder content/images 777
Folder content/gt 777
Folder content/pages 777
Is not that a very unsecure setting?
In the installation manual on phpwcms.de I read:
All other files listed above can set to 644, directories to 755. Sometimes it can help to set mode to 766 for the following directories: phpwcms_tmp, phpwcms_template, phpwcms_ftptakeover, inc_css, content. If you have further access problems try to set all files and directories to 777 (not recommend).
Here it is clearly stated that 777 is not recommended.
I am currently setting up my site. Somehow I cannot get things to work if I follow the directions on phpwcms.de (set content folder to 766) so I *have* to follow pappnase's directive to set it to 777. But am I not inviting potential hackers to hack my site?
Please share your thoughts on this...
Regards
-Hans