php forum
php mysql forum
php mysql smarty
 
Topic Options
#271313 - 03/23/04 03:25 AM Security Issues (cross-site-scripting)
schrottenberg Offline
User

Registered: 04/27/01
Posts: 38
Loc: Vienna
in a related thread at ubbthreads support forum i raised the question about security issues with ubbt, mainly cross site scripting.<br />see for more details: http://www.technicalinfo.net/papers/CSS.html<br /><br />does anybody know if this is relevant to ubbt (i'd guess: yes), and does anybody know a fool-proof way of disabling anything of that kind?

Top
#271314 - 03/23/04 02:44 PM Re: Security Issues (cross-site-scripting) [Re: Scott99999]
JoshPet Offline
I type Like navaho

Registered: 11/29/01
Posts: 11330
Loc: Charlotte, NC
I'm not sure I follow your question or the issue specifically - but as long as you aren't allowing HTML in posts - there are many filters to catch the use of HTML in various places.
_________________________
Joshua Pettit
www.JoshuaPettit.com
My abilities are for hire.

Top
#271315 - 03/23/04 05:42 PM Re: Security Issues (cross-site-scripting) [Re: Daine]
J.C. Offline
Addict

Registered: 08/11/00
Posts: 1551
Short of redoing the routines in threads that allow and disallow, I don't know of any.
_________________________
- Custom Web Development
http://www.JCSWebDev.com

Top



Moderator:  Deb 
Latest Posts
[7.2.1] - Naked shoutbox
by bellaonline
05/05/12 05:00 PM
[7.x] Stop Forum Spam Integration v0.4
by bellaonline
05/05/12 03:53 PM
Shout Box

(Views)Popular Topics
Known public proxy servers 1689885
Integrated Index Page (IIP) 5.3.1 555705
Finished-[6.5.2] Games Arcade Deluxe v1.9 501236
Integrated Index Page (IIP) 5.1.1 415112
TLD Bv2.1 Released - Threads Links Directory 396822
[6.0x] Who's Online 4.0.0 [Finished] 389412
Finished-[6.5.1] Integrated Index Page (IIP) 6.5 330423
Q & A 298663
Slash UBB 266936
[6.3.x] [beta] Hit Hack 2.0 227970
Forum Stats
13621 Members
59 Forums
37191 Topics
295716 Posts

Max Online: 686 @ 06/28/07 07:04 AM

 

 

 
fusionbb message board php hacks