stevenswing Posted October 15, 2009 Posted October 15, 2009 Currently, users are able to insert IFRAMES and other code into the create_account_process.php script. This displays when they submit the form. I currently have XSS protection in the .htaccess, however this does not sanitize posted data, only the query string. Is there any site-wide mod I could apply to filter user input? Thank you for your help.
FIMBLE Posted October 15, 2009 Posted October 15, 2009 Try Security pro from the contributions area Nic Sometimes you're the dog and sometimes the lamp post [/url] My Contributions
Recommended Posts
Archived
This topic is now archived and is closed to further replies.