-
Notifications
You must be signed in to change notification settings - Fork 5
/
Copy pathgetfile.php
38 lines (34 loc) · 1.28 KB
/
getfile.php
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
<?php
/****************************************************************************************
* LiveZilla getfile.php
*
* Copyright 2011 LiveZilla GmbH
* All rights reserved.
* LiveZilla is a registered trademark.
*
* Improper changes to this file may cause critical errors.
***************************************************************************************/
define("IN_LIVEZILLA",true);
if(!defined("LIVEZILLA_PATH"))
define("LIVEZILLA_PATH","./");
require(LIVEZILLA_PATH . "_definitions/definitions.inc.php");
require(LIVEZILLA_PATH . "_lib/functions.global.inc.php");
require(LIVEZILLA_PATH . "_lib/objects.global.users.inc.php");
require(LIVEZILLA_PATH . "_definitions/definitions.dynamic.inc.php");
if(isset($_GET["id"]) && setDataProvider())
{
$id = $_GET["id"];
if(strpos($id,".") === false && !isnull($res = getResource($id)))
{
if(file_exists("./uploads/" . $res["value"]) && strpos($res["value"],"..") === false)
{
header('Content-Description: File Transfer');
header('Content-Type: application/octet-stream');
header('Content-Length: ' . filesize("./uploads/" . $res["value"]));
header('Content-Disposition: attachment; filename=' . urlencode($res["title"]));
exit(file_get_contents("./uploads/" . $res["value"]));
}
}
}
header("HTTP/1.0 404 Not Found");
?>