Slide 6
Slide 6 text
For example ...
if (! isset($_SESSION['user_id'])) {
header('HTTP/1.1 403 Forbidden');
exit;
}
$filename = basename($_POST['filename']);
$file = sprintf('/var/www/support/uploads/%s', $filename);
if (file_exists($file)) {
header('Content-Description: File Transfer');
header('Content-Type: application/octet-stream');
header(sprintf('Content-Disposition: attachment; filename="%s"', $filename));
header(sprintf('Content-Length: %d', filesize($file)));
readfile($file);
exit;
}