By using this site, you agree to our updated Privacy Policy and our Terms of Use. Manage your Cookies Settings.
440,466 Members | 1,309 Online
Bytes IT Community
+ Ask a Question
Need help? Post your question and get tips & solutions from a community of 440,466 IT Pros & Developers. It's quick & easy.

Sql data reader

P: n/a
zag

http://www.sorcellerie.net/hits.asp?action=IN&hit=226

I am using sqlDataReader for Showing data from the Data base.
But if the Data from sql is having tags like <script>alert()</script> then it shows an alert box while binding.

Is there any way of suppressing it this ..... ????

regards

Nov 18 '05 #1
Share this Question
Share on Google+
1 Reply


P: n/a
there was a similar post on security newsgroup. you can use
HttpServerUtility.HTMLEncode().

av.
"zag" <an*******@discussions.microsoft.com> wrote in message
news:47**********************************@microsof t.com...

http://www.sorcellerie.net/hits.asp?action=IN&hit=226

I am using sqlDataReader for Showing data from the Data base.
But if the Data from sql is having tags like <script>alert()</script> then
it shows an alert box while binding.

Is there any way of suppressing it this ..... ????

regards

Nov 18 '05 #2

This discussion thread is closed

Replies have been disabled for this discussion.