How could I prevent
?name=<script>alert('hi!');</script>
this type of input being added to the URL in Coldfusion ??
Any ideas on how to prevent this ??
________________________________
From: Matt Robertson [mailto:[EMAIL PROTECTED]
Sent: 07 May 2004 07:44
To: CF-Talk
Subject: RE: Securing CF Apps against SQL Injection & Cross Site
Scripting
good ideas, all. Thanks for sharing!
--------------------------------------------
Matt Robertson [EMAIL PROTECTED]
MSB Designs, Inc. http://mysecretbase.com
--------------------------------------------
________________________________
[Todays Threads]
[This Message]
[Subscription]
[Fast Unsubscribe]
[User Settings]
- Re: Securing CF Apps against SQL Injection & Cross S... Matt Robertson
- Re: Securing CF Apps against SQL Injection & Cross S... Matt Robertson
- Re: Securing CF Apps against SQL Injection & Cross S... Matt Robertson
- Re: Securing CF Apps against SQL Injection & Cr... Andrew Grosset
- RE: Securing CF Apps against SQL Injection &... Matt Robertson
- Re: Securing CF Apps against SQL Injection &... Michael Dawson
- Re: Securing CF Apps against SQL Injection ... Andrew Grosset
- Re: Securing CF Apps against SQL Inject... Eric Dawson
- Re: Securing CF Apps against SQL Injection & Cross S... Ian Vaughan
- Re: Securing CF Apps against SQL Injection & Cr... Jochem van Dieten
- RE: Securing CF Apps against SQL Injection & Cross S... Ian Vaughan
- Re: Securing CF Apps against SQL Injection & Cross S... Brandon Harper
- RE: Securing CF Apps against SQL Injection & Cross S... Dave Watts