Welcome Guest, Not a member yet? Register   Sign In
xss_clean bug
#1

[eluser]Nielsk[/eluser]
Hello,

I was working on my community when I was checking the security side. When you use " /> in a input it will be under the input like this:
&lt;input name="title" id="title" type="text" value="DefQon.1 "&gt;&gt;&gt;" /></div>

The quote (") should also be edited in the xss_clean else it can't be defined as xss cleaner.

Niels

ps: if some text is wrong formulated. I'm tired at the moment because of some problems at home.


Messages In This Thread
xss_clean bug - by El Forum - 07-10-2008, 03:39 AM
xss_clean bug - by El Forum - 07-10-2008, 03:51 AM
xss_clean bug - by El Forum - 07-10-2008, 04:17 AM
xss_clean bug - by El Forum - 07-10-2008, 04:20 AM
xss_clean bug - by El Forum - 07-10-2008, 08:20 PM
xss_clean bug - by El Forum - 07-11-2008, 01:25 AM
xss_clean bug - by El Forum - 07-11-2008, 11:20 AM



Theme © iAndrew 2016 - Forum software by © MyBB