Re: Execute Applescript
This WebDNA talk-list message is from 1997
It keeps the original formatting.
numero = 10731
interpreted = N
texte = >>If we use WebCat2 to build a guestbook or anything that use>>database, dybamic data publishing, would it be possible for>>someone just type in the [applescript] [/applescript] tag>>and execute an Applescript on the server side?>We are considering a global preference thay disables the tag entirely.I think this is a very good idea! :)>Typing WebDNA tags into a database field: when database fields are>displayed on a page, they are not executed as WebDNA. So no one can>type some WebDNA [AppleScript] tags into your guestbook and have them>executed by simply viewing the guestbook. Yes, by surrounding the>[fieldname] with [Interpret]..[/Interpret] tags you can have the WebDNA>executed, but again you control whether or not that is put in the>template.Question: If I set my WebCat Prefs to InterpretAll=T, does this eliminatemy need to place all those [Interpret]..[/Interpret] tags into my HTML ...or does the InterpretAll=T preference only deal with the [tags] it finds onfiles without a .tmpl suffix or without a tag?Sincerely,Ken
Associated Messages, from the most recent to the oldest:
>>If we use WebCat2 to build a guestbook or anything that use>>database, dybamic data publishing, would it be possible for>>someone just type in the [applescript] [/applescript] tag>>and execute an Applescript on the server side?>We are considering a global preference thay disables the tag entirely.I think this is a very good idea! :)>Typing WebDNA tags into a database field: when database fields are>displayed on a page, they are not executed as WebDNA. So no one can>type some WebDNA [AppleScript] tags into your guestbook and have them>executed by simply viewing the guestbook. Yes, by surrounding the>[fieldname] with
[interpret]..[/Interpret] tags you can have the WebDNA>executed, but again you control whether or not that is put in the>template.Question: If I set my WebCat Prefs to InterpretAll=T, does this eliminatemy need to place all those
[interpret]..[/Interpret] tags into my HTML ...or does the InterpretAll=T preference only deal with the [tags] it finds onfiles without a .tmpl suffix or without a tag?Sincerely,Ken
Kenneth Grome
DOWNLOAD WEBDNA NOW!
Top Articles:
Talk List
The WebDNA community talk-list is the best place to get some help: several hundred extremely proficient programmers with an excellent knowledge of WebDNA and an excellent spirit will deliver all the tips and tricks you can imagine...
Related Readings:
[WriteFile] problems (1997)
Dark Horse Comics success story (1997)
Summing fields (1997)
WebCat2: Formulas.db question (1997)
Bug? (1997)
What about that Cc and Bcc bug? (2000)
WebDNA - fun to compare (2005)
Potential Conflicts? (1997)
P1: How to make webcatalog more stable. - LONG (1999)
cookies (2002)
WebCatalog for Postcards ? (1997)
Search in 2 or more catalogs (1997)
Question (1997)
[WebDNA] OT survey .... (2012)
AutoCommit Preference? (1998)
One Hour Email (2002)
possible, WebCat2.0 and checkboxes-restated (1997)
[WriteFile] problems (1997)
Shopping cart problem (2003)
Decrypt Users.db (2005)