I would have to now allow certain tags like iframe.  I use soeditor to
allow the users to format their post, so basic formatting tags would be
ok, but I agree there is no need for JS, or other tags like iframe.

~Brad

-----Original Message-----
From: Snake [mailto:[EMAIL PROTECTED] 
Sent: Friday, October 27, 2006 6:03 PM
To: CF-Talk
Subject: RE: weird VB exploit

You should have your guestbook not allow tags, or at least not allow
javascript.

Russ 


~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~|
Introducing the Fusion Authority Quarterly Update. 80 pages of hard-hitting,
up-to-date ColdFusion information by your peers, delivered to your door four 
times a year.
http://www.fusionauthority.com/quarterly

Archive: 
http://www.houseoffusion.com/groups/CF-Talk/message.cfm/messageid:258346
Subscription: http://www.houseoffusion.com/groups/CF-Talk/subscribe.cfm
Unsubscribe: 
http://www.houseoffusion.com/cf_lists/unsubscribe.cfm?user=11502.10531.4

Reply via email to