Back to Basics: When allowing user uploads, don't allow uploads to execute code

3/27/2014

I got an email from a reader who noticed some very odd errors happening in her web site's global error handler. Fortunately she's using ELMAH for error handling, which as you may know, is a JOY. She was seeing: Access to the path 'C:\Windows\security\database\secedit.sdb' is denied