RE: [PHP] PHPSESSID Handling...

2003-04-01 Thread John W. Holmes
> I'm working on securing my application, and am running into a slight issue > that I cannot seem to find a fix for. If the attacker changes his > PHPSESSID > cookie to contain illegal characters, it causes an error on the screen > upon > session_start(). > > How can I check to see if this is a va

[PHP] PHPSESSID Handling...

2003-04-01 Thread Dan Joseph
Hi Everyone, I'm working on securing my application, and am running into a slight issue that I cannot seem to find a fix for. If the attacker changes his PHPSESSID cookie to contain illegal characters, it causes an error on the screen upon session_start(). How can I check to see if this is a vali