Web Wiz - Green Windows Web Hosting

  New Posts New Posts RSS Feed - Prevent Decoding ?!?
  FAQ FAQ  Forum Search   Events   Register Register  Login Login

Prevent Decoding ?!?

 Post Reply Post Reply
Author
neotrix View Drop Down
Mod Builder Group
Mod Builder Group
Avatar

Joined: 09 November 2003
Location: Pakistan
Status: Offline
Points: 433
Post Options Post Options   Thanks (0) Thanks(0)   Quote neotrix Quote  Post ReplyReply Direct Link To This Post Topic: Prevent Decoding ?!?
    Posted: 30 April 2004 at 6:01am

Hello Sirs,

I have come across a lil problem, and that is... I passed an Encoded  (to their Hex Value) string to an asp file via the address bar...

it was like... http://www.awazofasia.net.tc/test.asp?songlist= %59%6F%75%72%20%53%65%63%72%65%74%20%4D%65%73%73%61%67%65%20 %69%73%20%54%68%69%73%21

the test.asp simply had this

[code]<%

somevariable=Request("songlist")

Response.Write(somevariable)

%>

but when i tested it.. it automatically decoded the encoded value. how can i do something as to make it *Not* decode the string value that i pass ??

is it possible ?

Back to Top
neotrix View Drop Down
Mod Builder Group
Mod Builder Group
Avatar

Joined: 09 November 2003
Location: Pakistan
Status: Offline
Points: 433
Post Options Post Options   Thanks (0) Thanks(0)   Quote neotrix Quote  Post ReplyReply Direct Link To This Post Posted: 30 April 2004 at 6:03am
Well Again you can see... even this forum decoded the encoded value to its Decoded meaning i mean roll the mouse over the link and see the status.
Back to Top
Semikolon View Drop Down
Senior Member
Senior Member


Joined: 09 September 2003
Location: Norway
Status: Offline
Points: 1718
Post Options Post Options   Thanks (0) Thanks(0)   Quote Semikolon Quote  Post ReplyReply Direct Link To This Post Posted: 30 April 2004 at 10:37am
if you don't want it to "decode" you have to encode all the percent signs too

but what's the problem with the decoding?
Back to Top
dpyers View Drop Down
Senior Member
Senior Member


Joined: 12 May 2003
Status: Offline
Points: 3937
Post Options Post Options   Thanks (0) Thanks(0)   Quote dpyers Quote  Post ReplyReply Direct Link To This Post Posted: 30 April 2004 at 11:48am

It wouln't take buch for someone to figure out that the delimiters are encoded.

If you are passing this with a GET, you need to look at using POST and/or encrypting the string before you encode it.

http://www.4guysfromrolla.com/webtech/010100-1.shtml


Lead me not into temptation... I know the short cut, follow me.
Back to Top
neotrix View Drop Down
Mod Builder Group
Mod Builder Group
Avatar

Joined: 09 November 2003
Location: Pakistan
Status: Offline
Points: 433
Post Options Post Options   Thanks (0) Thanks(0)   Quote neotrix Quote  Post ReplyReply Direct Link To This Post Posted: 01 May 2004 at 8:33am

Originally posted by Semikolon Semikolon wrote:

if you don't want it to "decode" you have to encode all the percent signs too

but what's the problem with the decoding?

the problem is, that asp decodes it emself... i dont want it to decode that line.. can this be done ?

Back to Top
Semikolon View Drop Down
Senior Member
Senior Member


Joined: 09 September 2003
Location: Norway
Status: Offline
Points: 1718
Post Options Post Options   Thanks (0) Thanks(0)   Quote Semikolon Quote  Post ReplyReply Direct Link To This Post Posted: 01 May 2004 at 4:32pm
it's not ASP that is decoding it.. it's the browser and there's nothing you can do about it without replacing all the % signs with the corresponding &#number; value, which will screw everything..
Back to Top
 Post Reply Post Reply

Forum Jump Forum Permissions View Drop Down

Forum Software by Web Wiz Forums® version 12.08
Copyright ©2001-2026 Web Wiz Ltd.


Become a Fan on Facebook Follow us on X Connect with us on LinkedIn Web Wiz Blogs
About Web Wiz | Contact Web Wiz | Terms & Conditions | Cookies | Privacy Notice

Web Wiz is the trading name of Web Wiz Ltd. Company registration No. 05977755. Registered in England and Wales.
Registered office: Web Wiz Ltd, Unit 18, The Glenmore Centre, Fancy Road, Poole, Dorset, BH12 4FB, UK.

Prices exclude VAT at 20% unless otherwise stated. VAT No. GB988999105 - $, € prices shown as a guideline only.

Copyright ©2001-2026 Web Wiz Ltd. All rights reserved.