I’m having problems with people upload shell hacking scripts on my replay uploader, they are hacking my website each and every time.
Here is my script
http://pastebin.com/JfhBFugN
Currently my website is down until I resolve this issue.
My webhost said : "Restrict file types accepted for upload: check the file extension and only allow certain files to be uploaded. Use a whitelist approach instead of a blacklist. Check for double extensions such as .php.w3g. "
I don’t know how, please fix my script only to allow the upload of “.w3g” with no way for someone to bypassing it.
Thank you alot !