RE: Passing +, =, - at post and get

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Charles,

No way! This site will only have about 3-4 users as its an intranet and I'll
be parsing everything at the server end.

George


> -----Original Message-----
> From: Charles P. Killmer [mailto:charlesk@xxxxxxxxxxxxxxxxxxxxx]
> Sent: 20 May 2004 2:31 pm
> To: php-windows@xxxxxxxxxxxxx
> Subject: RE:  Passing +, =, - at post and get
>
>
>  I hope you are not allowing the client to send T-SQL through the query
> string.  Consider them sending something like
> File.php?Query='; drop table XXX; --
>
> Charles Killmer
>
> -----Original Message-----
> From: George Pitcher [mailto:george.pitcher@xxxxxxxxxxx]
> Sent: Thursday, May 20, 2004 8:25 AM
> To: php-windows@xxxxxxxxxxxxx
> Subject:  Passing +, =, - at post and get
>
> Hi,
>
> I want to be able to pass the '=', '+' and '-' characters both from a
> web form and as part of a url, to enable a better way of searching.
> However, these characters are choking my IIS webserver and not getting
> through to the script.
>
> Can anyone suggest a better way of achieving this?
>
> Cheers
>
> George
>
> --
> PHP Windows Mailing List (http://www.php.net/) To unsubscribe, visit:
> http://www.php.net/unsub.php
>
> --
> PHP Windows Mailing List (http://www.php.net/)
> To unsubscribe, visit: http://www.php.net/unsub.php
>
>

-- 
PHP Windows Mailing List (http://www.php.net/)
To unsubscribe, visit: http://www.php.net/unsub.php


[Index of Archives]     [PHP Home]     [PHP Users]     [PHP Database Programming]     [PHP Install]     [Kernel Newbies]     [Yosemite Forum]     [PHP Books]

  Powered by Linux