Re: Paymethod question

This WebDNA talk-list message is from

1999


It keeps the original formatting.
numero = 24131
interpreted = N
texte = ... >> Let me know what site you program this into, because I want to come along >> and either >> >> a) Cause the website to malfunction >> b) crash the web server. >> >> What?!? How can this be?!?! Simple, when you get to this site, enter this >> into the credit card field &thisSucks! >> The exclamation point will break the comparison, and the ampersand should >> (assuming you host on Macs, Your mileage may vary on NT or Unix) cause the >> web server to crash as soon as it does a set header >> (Purchase/showcart/whatever).Having read your response to this question, I'm glad that I never published the URL of the site I've developed in WebCat. I do know that I have used a similar syntax to test that a field is empty, and now I'm concerned that somewhere along the line I am vulnerable to crashing/hacking... malicious or not.How would you go about testing a variable for blankness with a syntax that won't leave an opportunity for a crash?Thanks, ___Joe___------------------------------------------------------------- Brought to you by CommuniGate Pro - The Buzz Word Compliant Messaging Server. To end your Mail problems go to .This message is sent to you because you are subscribed to the mailing list . To unsubscribe, E-mail to: To switch to the DIGEST mode, E-mail to Associated Messages, from the most recent to the oldest:

    
  1. Re: Paymethod question (Christer Olsson 1999)
  2. Re: Paymethod question (Joseph D'Andrea 1999)
  3. SM: Update on this please: Paymethod question (Brad Eisenberg 1999)
... >> Let me know what site you program this into, because I want to come along >> and either >> >> a) Cause the website to malfunction >> b) crash the web server. >> >> What?!? How can this be?!?! Simple, when you get to this site, enter this >> into the credit card field &thisSucks! >> The exclamation point will break the comparison, and the ampersand should >> (assuming you host on Macs, Your mileage may vary on NT or Unix) cause the >> web server to crash as soon as it does a set header >> (Purchase/showcart/whatever).Having read your response to this question, I'm glad that I never published the URL of the site I've developed in WebCat. I do know that I have used a similar syntax to test that a field is empty, and now I'm concerned that somewhere along the line I am vulnerable to crashing/hacking... malicious or not.How would you go about testing a variable for blankness with a syntax that won't leave an opportunity for a crash?Thanks, ___Joe___------------------------------------------------------------- Brought to you by CommuniGate Pro - The Buzz Word Compliant Messaging Server. To end your Mail problems go to .This message is sent to you because you are subscribed to the mailing list . To unsubscribe, E-mail to: To switch to the DIGEST mode, E-mail to Joseph D'Andrea

DOWNLOAD WEBDNA NOW!

Top Articles:

Talk List

The WebDNA community talk-list is the best place to get some help: several hundred extremely proficient programmers with an excellent knowledge of WebDNA and an excellent spirit will deliver all the tips and tricks you can imagine...

Related Readings:

[WebDNA] i wish we could require one *amongst of a collection* of search comparisons/params (2011) Searching (2005) [ot] table gap help?!? (2001) [WebDNA] Error 500 with SUMM=T (2017) WebCat2final1 crashes (1997) Where's Cart Created ? (1997) WebCommerce: Folder organization ? (1997) A multi-processor savvy WebCatalog? (1997) PCS Frames (1997) The word TYPE in search contexts and fields (1998) Help name our technology! (1997) emailer settings and control questions (1997) Database Updates (1997) WebCat2 - Getting to the browser's username/password data (1997) emailer w/F2 (1997) Beta List (1998) Line Feed Character Appended (1998) WebCat2: Formulas.db question (1997) How true is this? (1999) WebCommerce Security Alert! (1996)