Welcome Guest, Not a member yet? Register   Sign In
What do you do with html injections?
#1

[eluser]Mr.Data[/eluser]
Hello!
The page I created contains almost everywhere some forms where the user can type in some content which is displayed afterwards. If someone types in some html code I don't want this code to be rendered but it should be cleaned by a php function like htmlentities(). It is possible that I manually add the htmlentities() function to each output but can't you do this globally? What do you do if you come into such a situation?


Messages In This Thread
What do you do with html injections? - by El Forum - 03-21-2012, 12:15 PM
What do you do with html injections? - by El Forum - 03-21-2012, 12:43 PM
What do you do with html injections? - by El Forum - 03-21-2012, 01:41 PM
What do you do with html injections? - by El Forum - 03-21-2012, 01:48 PM
What do you do with html injections? - by El Forum - 03-22-2012, 12:26 AM
What do you do with html injections? - by El Forum - 03-22-2012, 09:37 AM
What do you do with html injections? - by El Forum - 03-23-2012, 02:40 AM



Theme © iAndrew 2016 - Forum software by © MyBB