Re: RAW=T..Strange behaviour

This WebDNA talk-list message is from

2000


It keeps the original formatting.
numero = 28755
interpreted = N
texte = Consider it added to the wish list... Thanks! >Is there a reason that I'm not thinking of where adding &raw=t to a url >would be necessary? The reason I ask is that by adding it to a url, it >causes the page to break at the first [include] tag (for instance, >http://store.smithmicro.com/buy/results.tpl?cart=9525619682420456&raw=T). >It's not really a security issue, just that a command like that can be used >to make a site look really bad. So if there is no good reason to allow such >a command, can it be put on the wish list to make it work only as a context? > >MikeJay Van Vark *********************************** Smith Micro, Internet Solutions Div | eCommerce (WebCatalog) 16855 West Bernardo Drive | Software & Site Development Suite 380 | http://www.smithmicro.com/isd San Diego, CA 92127 | ------------------------- 858.675.1106 | Formerly, Pacific Coast Software 858.675.0372 (fax) ***********************************NASDQ: SMSI ------------------------------------------------------------- This message is sent to you because you are subscribed to the mailing list . To unsubscribe, E-mail to: To switch to the DIGEST mode, E-mail to Associated Messages, from the most recent to the oldest:

    
  1. Re: RAW=T..Strange behaviour (Jay Van Vark 2000)
  2. Re: RAW=T..Strange behaviour (JHowarth@smithmicro.com 2000)
  3. Re: RAW=T..Strange behaviour (Kenneth Grome 2000)
  4. RAW=T..Strange behaviour (Mike Davis 2000)
Consider it added to the wish list... Thanks! >Is there a reason that I'm not thinking of where adding &raw=t to a url >would be necessary? The reason I ask is that by adding it to a url, it >causes the page to break at the first [include] tag (for instance, >http://store.smithmicro.com/buy/results.tpl?cart=9525619682420456&raw=T). >It's not really a security issue, just that a command like that can be used >to make a site look really bad. So if there is no good reason to allow such >a command, can it be put on the wish list to make it work only as a context? > >MikeJay Van Vark *********************************** Smith Micro, Internet Solutions Div | eCommerce (WebCatalog) 16855 West Bernardo Drive | Software & Site Development Suite 380 | http://www.smithmicro.com/isd San Diego, CA 92127 | ------------------------- 858.675.1106 | Formerly, Pacific Coast Software 858.675.0372 (fax) ***********************************NASDQ: SMSI ------------------------------------------------------------- This message is sent to you because you are subscribed to the mailing list . To unsubscribe, E-mail to: To switch to the DIGEST mode, E-mail to Jay Van Vark

DOWNLOAD WEBDNA NOW!

Top Articles:

Talk List

The WebDNA community talk-list is the best place to get some help: several hundred extremely proficient programmers with an excellent knowledge of WebDNA and an excellent spirit will deliver all the tips and tricks you can imagine...

Related Readings:

triggers.db (1999) convertchars and case? (1998) Separate SSL Server (1997) Resetting a Formvariable (2000) [WebDNA] How to code a 301 redirect (2008) Formulas.db + Users.db (1997) Thanks ! (1997) Help! WebCat2 bug (1997) SKU lookup (1997) credit card authorization question (1997) [random] only for 1-100??? (1997) Setting up shop (1997) Using Applescript to process WebCatalog functions (1998) Generating unique SKU from [cart] - FIXED! (1997) Ignoring [OrderFile] context (2005) Roundup function? (1997) Navigator 4.0 & tables (1997) [showif] not working (2003) all records returned. (1997) Multi-processor Mac info ... (1997)