validater request problem

Discussion in 'ASP.NET 2.0' started by derinweb, Oct 1, 2006.

  1. hi
    i have a problem when i try to send a html tag to my database it send me this error how can i solve it please
    thanks for any help
    derin

    the error is:

    Server Error in '/kurdpedia' Application.


    A potentially dangerous Request.Form value was detected from the client (LoginView1$FormView1$short_subjectTextBox="<a href="www.kurdped..."). Description: Request Validation has detected a potentially dangerous client input value, and processing of the request has been aborted. This value may indicate an attempt to compromise the security of your application, such as a cross-site scripting attack. You can disable request validation by setting validateRequest=false in the Page directive or in the configuration section. However, it is strongly recommended that your application explicitly check all inputs in this case.

    Exception Details: System.Web.HttpRequestValidationException: A potentially dangerous Request.Form value was detected from the client (LoginView1$FormView1$short_subjectTextBox="<a href="www.kurdped...").

    Source Error:





    Code:
    The source code that generated this unhandled exception can only be shown when compiled in debug mode. To enable this, please follow one of the below steps, then request the URL:
    
    1. Add a "Debug=true" directive at the top of the file that generated the error. Example:
    
    <%@ Page Language="C#" Debug="true" %>
    
    or:
    
    2) Add the following section to the configuration file of your application:
    
    <configuration>
    <system.web>
    <compilation debug="true"/>
    </system.web>
    </configuration>
    
    Note that this second technique will cause all files within a given application to be compiled in debug mode. The first technique will cause only that particular file to be compiled in debug mode.
    
    Important: Running applications in debug mode does incur a memory/performance overhead. You should make sure that an application has debugging disabled before deploying into production scenario.
    Stack Trace:





    Code:
    [HttpRequestValidationException (0x80004005): A potentially dangerous Request.Form value was detected from the client (LoginView1$FormView1$short_subjectTextBox="<a href="www.kurdped...").]
       System.Web.HttpRequest.ValidateString(String s, String valueName, String collectionName) +286
       System.Web.HttpRequest.ValidateNameValueCollection(NameValueCollection nvc, String collectionName) +107
       System.Web.HttpRequest.get_Form() +108
       System.Web.HttpRequest.get_HasForm() +58
       System.Web.UI.Page.GetCollectionBasedOnMethod(Boolean dontReturnNull) +46
       System.Web.UI.Page.DeterminePostBackMode() +71
       System.Web.UI.Page.ProcessRequestMain(Boolean includeStagesBeforeAsyncPoint, Boolean includeStagesAfterAsyncPoint) +7989
       System.Web.UI.Page.ProcessRequest(Boolean includeStagesBeforeAsyncPoint, Boolean includeStagesAfterAsyncPoint) +158
       System.Web.UI.Page.ProcessRequest() +85
       System.Web.UI.Page.ProcessRequestWithNoAssert(HttpContext context) +20
       System.Web.UI.Page.ProcessRequest(HttpContext context) +108
       ASP.admin_kurdish_top_services_history_history_aspx.ProcessRequest(HttpContext context) +29
       System.Web.CallHandlerExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute() +317
       System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean&amp; completedSynchronously) +65
    

    Version Information:Microsoft .NET Framework Version:2.0.50727.42; ASP.NET Version:2.0.50727.42 <!--
    [HttpRequestValidationException]: A potentially dangerous Request.Form value was detected from the client (LoginView1$FormView1$short_subjectTextBox='<a href='www.kurdped...').
    at System.Web.HttpRequest.ValidateString(String s, String valueName, String collectionName)
    at System.Web.HttpRequest.ValidateNameValueCollection(NameValueCollection nvc, String collectionName)
    at System.Web.HttpRequest.get_Form()
    at System.Web.HttpRequest.get_HasForm()
    at System.Web.UI.Page.GetCollectionBasedOnMethod(Boolean dontReturnNull)
    at System.Web.UI.Page.DeterminePostBackMode()
    at System.Web.UI.Page.ProcessRequestMain(Boolean includeStagesBeforeAsyncPoint, Boolean includeStagesAfterAsyncPoint)
    at System.Web.UI.Page.ProcessRequest(Boolean includeStagesBeforeAsyncPoint, Boolean includeStagesAfterAsyncPoint)
    at System.Web.UI.Page.ProcessRequest()
    at System.Web.UI.Page.ProcessRequestWithNoAssert(HttpContext context)
    at System.Web.UI.Page.ProcessRequest(HttpContext context)
    at ASP.admin_kurdish_top_services_history_history_aspx.ProcessRequest(HttpContext context)
    at System.Web.HttpApplication.CallHandlerExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
    at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
    -->
     
  2. thanks very much Mark , your help is very usefull


    derin
     

Share This Page