Results 1 to 8 of 8

Thread: Javascript alert() function

Threaded View

  1. #6
    Lively Member
    Join Date
    Jul 2002
    Location
    Gateshead, UK
    Posts
    101

    Oh I see...

    I think I know what you mean now - like a sneaky javascript URL or something?

    P.S: Ah - so it only insterts the space if the "javascript" is in quotes... got it.

    P.P.S: I wonder if single quotes catch it out or not... testing: 'javascript'...

    P.P.P.S: No - that doesn't get filtered through - very weird... must only happen occasionally; ie it's not 100% js exploit-proof?
    Last edited by trojjer; Sep 28th, 2002 at 07:55 PM.
    <% Session("OwNeD")=True %><html><body>Blah... <%="Now get your ass back to the twilight zone..."%></body></html>

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  



Click Here to Expand Forum to Full Width