On last.fm: Green Day - Listen free and discover!
BNET Business Network:
BNET
TechRepublic
ZDNet
TalkBack 2 of 2:
« Previous
XSS
Another example of lack of input validation. Whether a website, application, or database, if user input is not filtered and validated i.e. allow filter [A-Za-z0-9], you are just asking for a compromise down the road. If you must allow alternative characters, then deny filter bad things i.e. </script>.

Curt Purdy
Information Security Officer
purdy@tecman.com
Posted by: purdy@...   Posted on: 10/25/05 You are currently: a Guest | Members login | Terms of Use

Alert moderator to an offensive message

Subscribe to this discussion via Email or RSS

Application Security  amikrut | 10/24/05
XSS  purdy@... | 10/25/05

What do you think?

SponsoredWhite Papers, Webcasts, and Downloads

advertisement
advertisement

SmartPlanet

Click Here