Text Reversal Exploit information

 
Post new topic   Reply to topic    Aprelium Forum Index -> PHP
View previous topic :: View next topic  

Was this helpful?
Yes
100%
 100%  [ 7 ]
No
0%
 0%  [ 0 ]
Total Votes : 7

Author Message
Toasty
-


Joined: 21 Feb 2008
Posts: 298
Location: Chicago, IL

PostPosted: Sun Aug 07, 2011 5:24 am    Post subject: Text Reversal Exploit information Reply with quote

There's an exploit out there that, when posted to some sites, will cause the entire container to be reversed (text inside a div, table, or textarea for example).

I wrote a fix for it below, and figured I'd share it with everybody:

Text Reversal Exploit and Fix
_________________
Audit the secure configuration of your server headers!
Back to top View user's profile Send private message Visit poster's website
admin
Site Admin


Joined: 03 Mar 2002
Posts: 1295

PostPosted: Sat Aug 13, 2011 12:31 am    Post subject: Re: Text Reversal Exploit information Reply with quote

Toasty wrote:
There's an exploit out there that, when posted to some sites, will cause the entire container to be reversed (text inside a div, table, or textarea for example).

I wrote a fix for it below, and figured I'd share it with everybody:

Text Reversal Exploit and Fix


The 3 chars you've found are the Unicode right to left mark and it is used to switch the direction of text when mixing RTL with LTR scripts (Arabic or Hebrew with Latin for example).

http://en.wikipedia.org/wiki/Right-to-left_mark .
_________________
Follow @abyssws on Twitter
Subscribe to our newsletter
_________________
Forum Administrator
Aprelium - https://aprelium.com
Back to top View user's profile Send private message
Toasty
-


Joined: 21 Feb 2008
Posts: 298
Location: Chicago, IL

PostPosted: Tue Aug 16, 2011 10:13 pm    Post subject: Reply with quote

Oh thanks a ton!

I had no idea what that was, and appreciate the insight!
_________________
Audit the secure configuration of your server headers!
Back to top View user's profile Send private message Visit poster's website
Display posts from previous:   
Post new topic   Reply to topic    Aprelium Forum Index -> PHP All times are GMT + 1 Hour
Page 1 of 1

 
Jump to:  
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum


Powered by phpBB phpBB Group