Re: RAW=T..Strange behaviour

This WebDNA talk-list message is from

2000


It keeps the original formatting.
numero = 28755
interpreted = N
texte = Consider it added to the wish list... Thanks! >Is there a reason that I'm not thinking of where adding &raw=t to a url >would be necessary? The reason I ask is that by adding it to a url, it >causes the page to break at the first [include] tag (for instance, >http://store.smithmicro.com/buy/results.tpl?cart=9525619682420456&raw=T). >It's not really a security issue, just that a command like that can be used >to make a site look really bad. So if there is no good reason to allow such >a command, can it be put on the wish list to make it work only as a context? > >MikeJay Van Vark *********************************** Smith Micro, Internet Solutions Div | eCommerce (WebCatalog) 16855 West Bernardo Drive | Software & Site Development Suite 380 | http://www.smithmicro.com/isd San Diego, CA 92127 | ------------------------- 858.675.1106 | Formerly, Pacific Coast Software 858.675.0372 (fax) ***********************************NASDQ: SMSI ------------------------------------------------------------- This message is sent to you because you are subscribed to the mailing list . To unsubscribe, E-mail to: To switch to the DIGEST mode, E-mail to Associated Messages, from the most recent to the oldest:

    
  1. Re: RAW=T..Strange behaviour (Jay Van Vark 2000)
  2. Re: RAW=T..Strange behaviour (JHowarth@smithmicro.com 2000)
  3. Re: RAW=T..Strange behaviour (Kenneth Grome 2000)
  4. RAW=T..Strange behaviour (Mike Davis 2000)
Consider it added to the wish list... Thanks! >Is there a reason that I'm not thinking of where adding &raw=t to a url >would be necessary? The reason I ask is that by adding it to a url, it >causes the page to break at the first [include] tag (for instance, >http://store.smithmicro.com/buy/results.tpl?cart=9525619682420456&raw=T). >It's not really a security issue, just that a command like that can be used >to make a site look really bad. So if there is no good reason to allow such >a command, can it be put on the wish list to make it work only as a context? > >MikeJay Van Vark *********************************** Smith Micro, Internet Solutions Div | eCommerce (WebCatalog) 16855 West Bernardo Drive | Software & Site Development Suite 380 | http://www.smithmicro.com/isd San Diego, CA 92127 | ------------------------- 858.675.1106 | Formerly, Pacific Coast Software 858.675.0372 (fax) ***********************************NASDQ: SMSI ------------------------------------------------------------- This message is sent to you because you are subscribed to the mailing list . To unsubscribe, E-mail to: To switch to the DIGEST mode, E-mail to Jay Van Vark

DOWNLOAD WEBDNA NOW!

Top Articles:

Talk List

The WebDNA community talk-list is the best place to get some help: several hundred extremely proficient programmers with an excellent knowledge of WebDNA and an excellent spirit will deliver all the tips and tricks you can imagine...

Related Readings:

My server admin needs help ... (2004) [WebDNA] XSS and getting rid of HTML codes (2018) Re: (1997) Bit off subject -- Faxing orders (1997) RAM variables (1997) Setting up WebCatalog with Retail Pro data (1996) too many nested tags ... (1997) Bug Report, maybe (1997) Close Databases Crash? (1998) The [shownext] limitations (2002) FW: Html mails and Outlook Win 2000 (2001) using listfiles to build a database? more (2000) WebCat2b15MacPlugIn - [authenticate] not [protect] (1997) webcat 2.1 new cart fields - please explain more (1998) RE: Problem (1997) Fun with dates (1997) OT: Limit on # of Pulldown entries (1997) IE Cache Problems... (1999) Cross OS Compatible HTML emailing (2003) Question about replacing words (1998)