Re: Form Design Advice - Mailing list pgsql-novice

From Colin McGuigan
Subject Re: Form Design Advice
Date
Msg-id 42288EED.3010007@earthcomber.com
Whole thread Raw
In response to Re: Form Design Advice  ("Ross Gohlke" <ross@grinz.com>)
Responses Re: Form Design Advice
Re: Form Design Advice
List pgsql-novice
Ross Gohlke wrote:
 > I'm not sure I understand. How could a user send incorrect data types if
 > the types are included as hidden fields? Since the variables are
 > declared as coming from $_POST, they cannot send anything in the URL.

Nothing stops anyone from copying the "View Source" of a webpage to a
local file, modifying it as they wish, and then pointing their web
browser at the local file and submitting from that.

--Colin McGuigan

pgsql-novice by date:

Previous
From: "Ross Gohlke"
Date:
Subject: Re: Form Design Advice
Next
From: "Ross Gohlke"
Date:
Subject: Re: Form Design Advice