Forum Discussion
hatim1
Nimbostratus
Nov 17, 2008XSS scripting / false positive
Hi all,
My ASM xss script tag (paramter) signature is falsely triggered due to the following value of a couple of parameters:
initfunc(true,false,'Mandatory Field','Value cannot exceed 9,999,999.99.','ScriptHost.Return(this.Value <= 9999999.99)','','',true,'Numeric Field',1,true,',','$',2,'.').
My question, is there a way for the web developers to avoid having such function explicitly detailed at the browser's level?
I can always disable the signature for such parameters but I would rather have the web developers change their code.
Thanks for your help
Hatim
- Ido_Breger_3805Historic F5 AccountHi,
- hatim1
Nimbostratus
Hi,
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects