A view into the mind of a serial optimist with a loaded rifle.
Wednesday, October 10, 2007
Sanitize your input.
You certainly don't want something like this to happen.
and don't forget input that is managed by java (direct POST modification bypasses java restrictions), and input that calls web pages by IDs for SQL queries instead of actual URLs.
No comments:
Post a Comment