Posted by Adrienne Boswell on 01/06/07 06:25
Gazing into my crystal ball I observed "Andy Dingley"
<dingbat@codesmiths.com> writing in news:1167993753.509358.204230@
11g2000cwr.googlegroups.com:
>
> Michael Fesser wrote:
>
>> Not necessary. Instead of trying to prevent people from entering special
>> chars or elements just take into account that there might be such stuff
>> in the submitted data and react accordingly.
>
> eBay won't even let you use quotes in their "message to seller"
> feature. It's most annoying!
>
They are worried about SQL injection, but yes, they could do things on the
server to accomodate that. They could replace characters server side.
--
Adrienne Boswell at Home
Arbpen Web Site Design Services
http://www.cavalcade-of-coding.info
Please respond to the group so others can share
Navigation:
[Reply to this message]
|