PHP Development
 
Forums: » Register « |  User CP |  Games |  Calendar |  Members |  FAQs |  Sitemap |  Support | 
User Name:
Password:
Remember me

The Shed is going Social! Join us on FaceBook and Twitter and chime in on the conversation.

Go Back   Dev Shed ForumsProgramming LanguagesPHP Development

Reply
Add This Thread To:
  Del.icio.us   Digg   Google   Spurl   Blink   Furl   Simpy   Y! MyWeb 
Thread Tools Search this Thread Rate Thread Display Modes
 
Unread Dev Shed Forums Sponsor:
  #16  
Old January 10th, 2006, 01:35 PM
kuza55's Avatar
kuza55 kuza55 is offline
It's only wrong if you're caught....
Dev Shed Beginner (1000 - 1499 posts)
 
Join Date: Dec 2003
Location: Sydney, Australia
Posts: 1,286 kuza55 User rank is First Lieutenant (10000 - 20000 Reputation Level)kuza55 User rank is First Lieutenant (10000 - 20000 Reputation Level)kuza55 User rank is First Lieutenant (10000 - 20000 Reputation Level)kuza55 User rank is First Lieutenant (10000 - 20000 Reputation Level)kuza55 User rank is First Lieutenant (10000 - 20000 Reputation Level)kuza55 User rank is First Lieutenant (10000 - 20000 Reputation Level)kuza55 User rank is First Lieutenant (10000 - 20000 Reputation Level)kuza55 User rank is First Lieutenant (10000 - 20000 Reputation Level) 
Time spent in forums: 3 Weeks 3 Days 6 h 10 m 16 sec
Reputation Power: 173
Quote:
Originally Posted by SimonGreenhill
It's a filter for apache's mod_security which removes all incoming cross site scripting attacks.

Unless of course you've got a problem like PHPBB did where you could URLencode the string twice (so for to get it past the filter you pass %253C in the URL, PHP converts it to %3C and if thats url decoded you get <), but then again if you're using PHPBB, there's not much that'll save you.... (Just wanted to say that while its a good idea, its not a silver bullet, just in case someone takes it as if it is....)
__________________
- Alex
Web Security Research (my blog)
Handbook of Applied Cryptography (Free!)

Reply With Quote
Reply

Viewing: Dev Shed ForumsProgramming LanguagesPHP Development > Cool PHP tricks.

Developer Shed Advertisers and Affiliates



Thread Tools  Search this Thread 
Search this Thread:

Advanced Search
Display Modes  Rate This Thread 
Rate This Thread:


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
View Your Warnings | New Posts | Latest News | Latest Threads | Shoutbox
Forum Jump

Forums: » Register « |  User CP |  Games |  Calendar |  Members |  FAQs |  Sitemap |  Support | 
  
 


Powered by: vBulletin Version 3.0.5
Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.

© 2003-2013 by Developer Shed. All rights reserved. DS Cluster - Follow our Sitemap