Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Collapse
Code Project
  1. Home
  2. Web Development
  3. ASP.NET
  4. Blocking javascript injections in an asp guestbook

Blocking javascript injections in an asp guestbook

Scheduled Pinned Locked Moved ASP.NET
javascripthelp
2 Posts 2 Posters 0 Views 1 Watching
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • J Offline
    J Offline
    JoeySmith
    wrote on last edited by
    #1

    Well i've been messing around with my asp guestbook and before I deploy it I want to set up checks. I'm sure we all know what happens to a guestbook that doesn't have checks set up. Anyways, in the "Name" ,form, users can still inject javascript (i.e. an annoying alert box) I've been googling for about an hour straight and havent found anything. Hopefully one of you can help me out w/ this. ._._._._._.-.-.-.-.-._._._._._.-.-.-.-.-._._._._._.-.-.-.-.- clean and elegant. a beautiful craft

    G 1 Reply Last reply
    0
    • J JoeySmith

      Well i've been messing around with my asp guestbook and before I deploy it I want to set up checks. I'm sure we all know what happens to a guestbook that doesn't have checks set up. Anyways, in the "Name" ,form, users can still inject javascript (i.e. an annoying alert box) I've been googling for about an hour straight and havent found anything. Hopefully one of you can help me out w/ this. ._._._._._.-.-.-.-.-._._._._._.-.-.-.-.-._._._._._.-.-.-.-.- clean and elegant. a beautiful craft

      G Offline
      G Offline
      Guffa
      wrote on last edited by
      #2

      Use Server.HTMLEncode when you display the value. --- b { font-weight: normal; }

      1 Reply Last reply
      0
      Reply
      • Reply as topic
      Log in to reply
      • Oldest to Newest
      • Newest to Oldest
      • Most Votes


      • Login

      • Don't have an account? Register

      • Login or register to search.
      • First post
        Last post
      0
      • Categories
      • Recent
      • Tags
      • Popular
      • World
      • Users
      • Groups