Print Page | Close Window

Question about escape characters in DB

Printed From: Web Wiz Forums
Category: Web Wiz Web App Support Forums
Forum Name: Web Wiz Forums
Forum Description: Support forum for Web Wiz Forums application.
URL: https://forums.webwiz.net/forum_posts.asp?TID=25701
Printed Date: 03 April 2026 at 4:05pm
Software Version: Web Wiz Forums 12.08 - https://www.webwizforums.com


Topic: Question about escape characters in DB
Posted By: Jyn13
Subject: Question about escape characters in DB
Date Posted: 09 May 2008 at 7:34pm
Hello,
 
As near as I could tell this hasn't been asked before, but as far as I know it could be unique to my specific hardware/software setup too. Anyways, I was looking at the database working on a plan for how I'm going to integrate it into my existing membership setup and modifying the registration form and all that.
 
In some of the fields (but not consistently across records) escape characters show instead of the o the & # 111; (spaces put in so it displays and doesn't convert) it displays properly on the webpages, I'm just curious why this is happening so I make sure I pass info to the database correctly with my modified registration page.
I'm running Windows Server 2003, IIS 6.0, SQL Server 2005 and using IE 7, with Version 9.08 of the forum.
 
Jyn
 
edit/update: after working with the DBA at work to see if she could help me explain it, it looks like it only coverts the o to the escape sequence when it would say "on" in the field.
So what I need to know, is this a SQL thing or an app thing?



Replies:
Posted By: WebWiz-Bruce
Date Posted: 12 May 2008 at 10:11am
The security filters do this when you submit the page.

The reason is that many scripting and css malicious code is fired by on events, such as 'onmouseover', 'onload', etc. To prevent malicious code getting through the word 'on' is HTML encoded which prevents allot of malicious code from running.


-------------
https://www.webwiz.net/web-wiz-forums/forum-hosting.htm" rel="nofollow - Web Wiz Forums Hosting
https://www.webwiz.net/web-hosting/windows-web-hosting.htm" rel="nofollow - ASP.NET Web Hosting



Print Page | Close Window

Forum Software by Web Wiz Forums® version 12.08 - https://www.webwizforums.com
Copyright ©2001-2026 Web Wiz Ltd. - https://www.webwiz.net