Yozzer
Jun 27, 2012Nimbostratus
Spaces in the machine
Hi
I have the following command that searches for "id" in the url and then performs an action if the id value is contained in the data group list:
if {[matchclass [string tolower [URI::query [HTTP::uri] id]] contains $::Portlet_ref]} {
However if i add a space (%20) before, in the middle or after the id value (%20id, i%20d and id%20) then it can be bypassed. This also happens if i add a space in the value (%20hello, He%20llo and hello%20)
How can i trim spaces from both the id parameter name and its value so that it wont be bypassed?
Thanks