Added another major PHP security issue in their example code.

attacks and should never have been posted. It contravenes every best practice.
<blockquote><pre><code>move_uploaded_file($_FILES["file"]["tmp_name"], "upload/" . $_FILES["file"]["name"]);</code></pre></blockquote>
Anyone could upload a file with a name like "../hacked.php", and PHP would happily write it.
It is not okay to do no validation on a file upload, this is a massive security risk
