Posted by Frankie on 07/16/06 18:04
"Rik" <luiheidsgoeroe@hotmail.com> wrote in message
news:ecfda$44b6fcb1$8259c69c$13740@news2.tudelft.nl...
> >
> > So you're suggesting all POST data be cleaned, even if it comes from a
> > select menu which doesn't allow user input?
>
> Yes. I could send raw headers to your script, but much simpler is to make
my
> own form with the apropriate names, and post it to your url...
Would it be more secure to send data as SESSION variables instead of POST
variables (after initial data validation)?
IF.HE.
[Back to original message]
|