What you want to see on DotNetFunda.com ?
DotNetFunda.Com Logo
Twitter TwitterLinkedIn
YouTubeGoogle
 Online : 9647 |  Welcome, Guest!   Register  Login
 Home > Blogs > ASP.NET > A potentially dangerous Request.Form value was detected ...
Jvprabhusanthi

A potentially dangerous Request.Form value was detected

 Blog author: Jvprabhusanthi | Posted on: 5/2/2012 | Category: ASP.NET Blogs | Views: 603 | Status: [Member] | Points: 75 | Alert Moderator   


while trying to execute my script in the front end text box to find the possible script injection in ASP.net. I got the below error,

 

A potentially dangerous Request.Form value was detected from the client (Text="venkat here?"). 


Description: Request Validation has detected a potentially dangerous client input value, and processing of the request has been aborted. This value may indicate an attempt to compromise the security of your application, such as a cross-site scripting attack. To allow pages to override application request validation settings, set the requestValidationMode attribute in the httpRuntime configuration section to requestValidationMode="2.0". Example: . After setting this value, you can then disable request validation by setting validateRequest="false" in the Page directive or in the configuration section. However, it is strongly recommended that your application explicitly check all inputs in this case. For more information, see http://go.microsoft.com/fwlink/?LinkId=153133. 



Exception Details: System.Web.HttpRequestValidationException: A potentially dangerous Request.Form value was detected from the client (Text="Venkat Here"). 
  
  
Solution:   
  
1. Add the below content in web.config file, 
  

  
2. Disabling request validation on a page 




  
Cheers, 
Venkatesan Prabu .J 
Head, KaaShiv InfoTech


Cheers,
Venkatesan Prabu .J
Head, KaaShiv InfoTech
http://kaashivinfotech.com/Ebooks.aspx
Found interesting? Add this to:


Experience:9 year(s)
Home page:http://www.dotnetfunda.com
Member since:Tuesday, May 01, 2012
Level:Starter
Status: [Member]
Biography:
>> Write Response - Respond to this post and get points

More Blogs

About Us | Contact Us | The Team | Advertise | Software Development | Write for us | Testimonials | Privacy Policy | Terms of Use | Link Exchange | Members | Go Top
General Notice: If you find plagiarised (copied) contents on this page, please let us know the original source along with your correct email id (to communicate) for further action.
Copyright © DotNetFunda.Com. All Rights Reserved. Copying or mimicking the site design and layout is prohibited. Logos, company names used here if any are only for reference purposes and they may be respective owner's right or trademarks. | 5/25/2013 7:45:21 PM