in reply to Inserting a Value
If possible, you want to interpolate those values before putting them in %FORM. However, if that's not possible, you want eval. Warning:: this is a very, very dangerous technique. Handled incorrectly, you could easily cause a lot of damage to your system.
If you tell us how you are populating %FORM, we can probably help plug some of those security holes. I'm assuming you're getting the data from an HTML form. If so, read through my CGI course for some good security information (see link below).
Cheers,
Ovid
New address of my CGI Course.
Silence is Evil (feel free to copy and distribute widely - note copyright text)
|
|---|
| Replies are listed 'Best First'. | |
|---|---|
|
Re: Re: Inserting a Value
by lisaw (Beadle) on Apr 17, 2003 at 18:48 UTC | |
by grep (Monsignor) on Apr 17, 2003 at 19:12 UTC | |
by merlyn (Sage) on Apr 17, 2003 at 20:16 UTC |