Posted by David Dorward on 01/21/06 13:18
Richard Marx wrote:
>> GET is tainted and needs to be sanitised before being dumped into the
>> page. Currently you are opening up for a cross site scripting attack.
>> http://uk.php.net/manual/en/function.htmlspecialchars.php should do the
>> job.
>
> Thanks, how would you recommend I change it? I.e. which characters?
The default.
--
David Dorward <http://blog.dorward.me.uk/> <http://dorward.me.uk/>
Home is where the ~/.bashrc is
Navigation:
[Reply to this message]
|