HTML injection

WouterWouter
It's possible to insert HTML tags into the input fields used in serversCheck. Inserting double quotes (") makes it impossible to delete added groups/rules/ect trough the interface. I've removed it using the conf files.

Comments

  • AdministratorAdministrator
    This is not yet supported. Enter part of the tag instead. For example to see if an image call is there you would enter it as

    string matching equals mygif.gif rather than src= "mygif.gif">

This discussion has been closed.