home hardware prices news articles forums photos user reviews
Go Back   Tech Support Forums - TechIMO.com > PC Hardware and Tech > Webmastering and Programming
Ask a Tech Support Question (free)!

Securing user inputted CSS data.

Reply
Get bargains at  »  Dealighted.com
 
Thread Tools Search this Thread
Currently Active Users: 1726
Discussions: 200,950, Posts: 2,379,461, Members: 246,312
Old February 4th, 2008, 10:54 PM   Digg it!   #1 (permalink)
SoMuchAnime-SoLittleTime
 
EXreaction's Avatar
 
Join Date: Aug 2003
Location: Plymouth, WI
Posts: 14,983
Blog Entries: 1
Send a message via MSN to EXreaction
Securing user inputted CSS data.

For a system I am working on it allows users to post their own CSS data to customize the page style for all users who see their page (I guess, kinda like how MySpace has it).

Currently I am having it do a few things:
Replace ", <, > with &quot;, &lt;, &gt;
Remove the words java and script

I am not sure if this is completely secured yet. I am mostly afraid of ways for users to have the word javascript in there that would not get replaced by the filter, yet still be rendered by the browser. For example, I found out that java\nscript would work on IE, but my current filter will work against that, I am just worried there may be more.
__________________
My photography: Flickr

Lithium Studios - phpBB3, PHP, and Web Development
EXreaction is offline   Reply With Quote
Reply
Thread Tools Search this Thread
Search this Thread:

Advanced Search

Similar Threads
Thread Thread Starter Forum Replies Last Post
securing xml file that holds user name and pw amtrac24 Webmastering and Programming 5 November 20th, 2006 10:11 PM
AOL makes user data public... Chuckiechan IMO Community 5 August 8th, 2006 10:10 AM
User settings and application data lost Gilthanaz Applications and Operating Systems 2 July 12th, 2005 11:26 PM
How are Japanese characters inputted? Jonty IMO Community 21 December 29th, 2003 05:31 PM
Securing my Computer Terminal23 General Tech Discussion 19 November 22nd, 2002 10:14 AM


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Most Active Discussions
The disrespect of Obama by Russian .. (39)
Is It Just Me? (2941)
Making Health Care Worse (177)
Wireless Televisions. (12)
CPU fan stops spinning randomly (8)
windows 7 problem (7)
Regular Build (9)
radeon x850xt platinum & shader.. (6)
Is the PSU I received dead? (12)
Print spooler problem (15)
windows vista security holes (10)
HIS HD5770 graphic card question (15)
Install XP pro and a Vista laptop ?.. (11)
Dept. of HS: NSA 'Helped' Develop V.. (16)
Recent Discussions
My monitor won't turn on after instal.. (1)
Regular Build (9)
Laptop with wireless problem. (3)
Internet Lost (3)
Virus advise (7)
Dept. of HS: NSA 'Helped' Develop Vis.. (16)
EVGA 9800 gtx help with finding a goo.. (10)
Modern Warfare 2: Who Bought It? (62)
windows vista security holes (10)
Point and Shoot Camera Suggestions. (4)
Multiple Restarts Required at Boot (2)
Ideal cheap graph card for PC-Gaming? (18)
radeon x850xt platinum & shader 3 (6)
Graphics Card Upgrade Question (4)
For Sale BFG GTX285 OC2 with 10 year .. (3)
How to convert MP3's (4)
Wireless Televisions. (12)
Hp Artist Edition + Matching Bag (0)
Asus P4G8X Mobo (6)
Xbox 360 GTA: SA disk error (1)
Is the PSU I received dead? (12)
windows 7 internet problem (5)
BSOD On Startup (ntoskrnl.exe) (2)
Print spooler problem (15)
Have you switched yet? (86)


All times are GMT -4. The time now is 01:09 AM.
TechIMO Copyright 2009 All Enthusiast, Inc.



1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28