How could I prevent


?name=<script>alert('hi!');</script>


this type of input being added to the URL in Coldfusion ??


Any ideas on how to prevent this ??

________________________________

From: Matt Robertson [mailto:[EMAIL PROTECTED]
Sent: 07 May 2004 07:44
To: CF-Talk
Subject: RE: Securing CF Apps against SQL Injection & Cross Site
Scripting

good ideas, all.  Thanks for sharing!

--------------------------------------------
Matt Robertson       [EMAIL PROTECTED]
MSB Designs, Inc.  http://mysecretbase.com
--------------------------------------------
________________________________
[Todays Threads] [This Message] [Subscription] [Fast Unsubscribe] [User Settings]

Reply via email to