Re: date format



On Tue, 15 Sep 2009 10:08:16 -0400, bill wrote:
Captain Paralytic wrote:
I would certainly check for SQL injection since his statement: " (They
are generated from a javascript function that displays a calendar, so
I don't need to worry about sql injection.)" shows a woeful lack of
understanding of how data gets from the web page to his application.
The assumption that, if data is arriving at the application
(presumably as a result of a form post), it must have come from the
form that I made and no one has played with their own javascript is
just waiting for trouble.

I agree with you. It is unlikely (but not impossible) in this
setting as it is a non-web connected intranet with only 10
trusted users. But, . . .

Habits are EVERYTHING. I certainly never know when I'm writing one thing
that it only and ever shall be used for exactly one purpose under one
set of conditions that I understand correctly and fully. Your app is
non-web connected right now, but it's difficult to think that someone
might not copy that calendar code for an external page sometime, or that
one of your ten trusted users would never get cheesed off at another of
the ten trusted users and want to foul up the other somehow.

--
45. I will make sure I have a clear understanding of who is responsible for
what in my organization. For example, if my general screws up I will not
draw my weapon, point it at him, say "And here is the price for failure,"
then suddenly turn and kill some random underling. --Evil Overlord List
.



Relevant Pages

  • Re: Fr/lat/ru tu-vous/tu-vos/ - : etymology ?
    ... The early understanding of the world was guided ... The lunisolar calendar of Göbekli Tepe used ... right side (right eye, right arm, right hand ...) ...
    (sci.lang)
  • Re: Linchpin University founded by Inger herself?
    ... I am really sorry for not understanding anything what you ... say, neither in your messages, nor on your website, and I gave up ... A calendar requires a simple or a more complex numerical model ... or nobody will understand you. ...
    (sci.archaeology)
  • Re: Linchpin University founded by Inger herself?
    ... >say, neither in your messages, nor on your website, and I gave up ... >A calendar requires a simple or a more complex numerical model ... I undertook three serious attempts at understanding ... >or nobody will understand you. ...
    (sci.archaeology)
  • Re: Libertarians and Government
    ... considered a "de facto" renunciation of citizenship... ... My understanding is that it's impossible for someone born in the US to ... but they won't take away your citizenship. ... Someone's calendar is out of kilter. ...
    (rec.arts.sf.fandom)
  • Re: showModalDialog with an ASP page
    ... When this cell is clicked, ... The javascript function does the showModalDialog to open the ... prepopulate the calendar control on the new page. ...
    (microsoft.public.dotnet.framework.aspnet)