Print Page | Close Window

how to fix this bug?

Printed From: Web Wiz Forums
Category: Web Wiz Web App Support Forums
Forum Name: Web Wiz Forums
Forum Description: Support forum for Web Wiz Forums application.
URL: https://forums.webwiz.net/forum_posts.asp?TID=14380
Printed Date: 12 April 2026 at 5:20pm
Software Version: Web Wiz Forums 12.08 - https://www.webwizforums.com


Topic: how to fix this bug?
Posted By: atula_7
Subject: how to fix this bug?
Date Posted: 23 March 2005 at 12:16am
this is some sample:
http://webwiz.net/wwf_forum/default.asp?c=2 - http://webwiz.net/wwf_forum/default.asp?c=2  (normal)
and i add this:
http://webwiz.net/wwf_forum/default.asp?c=2 - http://webwiz.net/wwf_forum/default.asp?c=2'  
or http://webwiz.net/wwf_forum/default.asp?c=a - http://webwiz.net/wwf_forum/default.asp?c=a  
or http://webwiz.net/wwf_forum/post_message_form.asp?FID=1 - http://webwiz.net/wwf_forum/post_message_form.asp?FID=1 (normal)
http://webwiz.net/wwf_forum/post_message_form.asp?FID=1 - http://webwiz.net/wwf_forum/post_message_form.asp?FID=1'  (it will error - easy to hack)
 
Microsoft VBScript runtime error '800a000d'

Type mismatch: '[string: "2'"]'

Type mismatch: '[string: "a"]'
Type mismatch: '[string: "1'"]'
 
yes, these are simple bug, but i cant fix cause i'm noob Ouch
could you plz fix this? check and retrict load this bug
 
this is my sample the page fixed it (before they got this bug too):
http://mobitechs.com/home/mobile.aspx?mobileid=44 - http://mobitechs.com/home/mobile.aspx?mobileid=44  (normal) and u add this:
http://mobitechs.com/home/mobile.aspx?mobileid=44 - http://mobitechs.com/home/mobile.aspx?mobileid=44'
or http://mobitechs.com/home/mobile.aspx?mobileid=a - http://mobitechs.com/home/mobile.aspx?mobileid=a
 
not problem, not error it only redirect to http://mobitechs.com/home/mobile.aspx - http://mobitechs.com/home/mobile.aspx  
 
thank for your support!
 
 



Replies:
Posted By: WebWiz-Bruce
Date Posted: 23 March 2005 at 5:17am
This is not a security bug so not a hack, only specified characters or numbers from real links are permitted.

By the way your examples you gave as being fixed also crashed the server with errors.


-------------
https://www.webwiz.net/web-wiz-forums/forum-hosting.htm" rel="nofollow - Web Wiz Forums Hosting
https://www.webwiz.net/web-hosting/windows-web-hosting.htm" rel="nofollow - ASP.NET Web Hosting



Print Page | Close Window

Forum Software by Web Wiz Forums® version 12.08 - https://www.webwizforums.com
Copyright ©2001-2026 Web Wiz Ltd. - https://www.webwiz.net