Closed phihag closed 11 years ago
Add a check that the application in question can handle exotic characters and does not break down. In particular, this includes
"
'
<{[()]}>
&|
The CLRF-Sequence should also be tested by this attacker.
Ignore my last comment, CLRF deserves a own attacker.
Add a check that the application in question can handle exotic characters and does not break down. In particular, this includes
"
,'
)<{[()]}>
)&|
)