Post #58,783
10/23/02 10:50:03 AM
|
Thought you had it...
...no biggie...
[link|http://mywebpages.comcast.net/bepatient/warn1.png|Sign]
You were born...and so you're free...so Happy Birthday! Laurie Anderson
[link|mailto:bepatient@aol.com|BePatient]
|
Post #58,790
10/23/02 11:05:03 AM
10/23/02 11:09:48 AM
|
And now presenting:
The sarcasm tags:
[sarcasm] Insert Sarcasm Here [/sarcasm] <sarcasm> Insert Sarcasm Here </sarcasm> <sarcasm/>
All of the tags insert the image; no need to match open and close tags either... but there is a certain satisfaction in being able to do so now...
Regards,
-scott anderson
"Welcome to Rivendell, Mr. Anderson..."
Edited by admin
Oct. 23, 2002, 11:05:21 AM EDT
Edited by admin
Oct. 23, 2002, 11:09:48 AM EDT
|
Post #58,791
10/23/02 11:06:54 AM
|
Did you know that..
...you are a shitty programmer I'm complete now....thanks.
You were born...and so you're free...so Happy Birthday! Laurie Anderson
[link|mailto:bepatient@aol.com|BePatient]
|
Post #58,796
10/23/02 11:14:47 AM
|
About Effing time you....
BASTARD! This now concludes your daily scheduled crow-report... ;) COOL!
[link|mailto:curley95@attbi.com|greg] - Grand-Master Artist in IT [link|http://www.iwethey.org/ed_curry/|REMEMBER ED CURRY!!!]
Your friendly Homeland Security Officer reminds: Hold Thumbprint to Screen for 5 seconds, we'll take the imprint, or Just continue to type on your keyboard, and we'll just sample your DNA.
|
Post #58,800
10/23/02 11:17:03 AM
|
BTW, Greg...
Go look at my question in the Linux forum... please? :-)
Regards,
-scott anderson
"Welcome to Rivendell, Mr. Anderson..."
|
Post #58,797
10/23/02 11:14:53 AM
|
Thanks!
|
Post #58,814
10/23/02 11:45:57 AM
|
Dammit
Enough with the wee codes already. There's too many to remember as it is. Well, that's not what I expected. Closing the tag creates (IMO) sub-optimal results.
=== Microsoft offers them the one thing most business people will pay any price for - the ability to say "we had no choice - everyone's doing it that way." -- [link|http://z.iwethey.org/forums/render/content/show?contentid=38978|Andrew Grygus]
|
Post #58,820
10/23/02 11:57:47 AM
|
Re: Dammit
Bitch and moan... Better? Or maybe I should put the closing </sarcasm> tag in visibly...
Regards,
-scott anderson
"Welcome to Rivendell, Mr. Anderson..."
|
Post #58,822
10/23/02 12:00:34 PM
|
Re: Dammit
Does this mean we can now direct-link pictures? IWE fora had that.
-drl
|
Post #58,823
10/23/02 12:01:28 PM
|
No.
There's a way to put javascript into img tags... I would need to filter for it first, and I can't remember the exact technique that was used.
Regards,
-scott anderson
"Welcome to Rivendell, Mr. Anderson..."
|
Post #58,886
10/23/02 2:23:38 PM
|
this it?
[link|http://msgs.securepoint.com/cgi-bin/get/bugtraq0008/310.html|http://msgs.securepo...traq0008/310.html]
This comment suggests the exploit can occur in more than just the img tag [link|http://www.security-express.com/archives/bugtraq/2000-01/0045.html|http://www.security-...2000-01/0045.html]
Darrell Spice, Jr.
[link|http://home.houston.rr.com/spiceware/|SpiceWare] - We don't do Windows, it's too much of a chore
|
Post #58,890
10/23/02 2:46:48 PM
|
That's the one.
Well, if it requires a <script> tag, then no worries. I already strip those. If it can be done just in the link src though...
Regards,
-scott anderson
"Welcome to Rivendell, Mr. Anderson..."
|
Post #58,895
10/23/02 2:52:30 PM
|
Script tags not required
<html> <head> <title>Hello</title> </head> <body> <img src='javascript:alert("hello")'> </body> </html>
|
Post #58,902
10/23/02 3:14:22 PM
|
Nifty.
Well, I've got an HREF scrubber now anyway, so I guess I can add img tags too.
But, the question is, can someone put <script>whatever</script> in say 'foo.html' and then do <img src="http://myserver.com/foo.html"> and get it to run...
Regards,
-scott anderson
"Welcome to Rivendell, Mr. Anderson..."
|
Post #58,914
10/23/02 3:47:11 PM
|
Don't think that level of indirection would work
The problem seems to arise in the evaluation of the source attribute. I think once it starts loading the source, it doesn't continue the evaluation chain.
|
Post #58,828
10/23/02 12:11:00 PM
|
Testing
Here goes. You'd think someone would test this stuff before rolling out changes in live code. Yep, that seems to work better. ;)
=== Microsoft offers them the one thing most business people will pay any price for - the ability to say "we had no choice - everyone's doing it that way." -- [link|http://z.iwethey.org/forums/render/content/show?contentid=38978|Andrew Grygus]
|
Post #58,840
10/23/02 12:24:47 PM
|
Sure...
...you'd also think that people from Cleveland would be less critical. But we all know better don't we?
You were born...and so you're free...so Happy Birthday! Laurie Anderson
[link|mailto:bepatient@aol.com|BePatient]
|
Post #58,860
10/23/02 1:26:44 PM
|
Speaking of critical ...
Currently The Sign[tm] only appears in one location ... good. But it doesn't indicate where the opening and closing tags actually went ... bad.
Methinks we need some way of indicating the span of the tag, like maybe a modified color within the span. Ooh, ooh, I know. Tag the span with <span class="sarcasm">foo</span> tags. Add a description in the style sheet. Then anyone (cough Karsten cough) who uses their own style sheet can define it however they want. And if you *really* want to go crazy with the CSS, you can define the image link in the ".before" or ".after" pseudo element.
=== Microsoft offers them the one thing most business people will pay any price for - the ability to say "we had no choice - everyone's doing it that way." -- [link|http://z.iwethey.org/forums/render/content/show?contentid=38978|Andrew Grygus]
|
Post #69,724
12/18/02 5:03:09 PM
12/18/02 5:04:32 PM
|
ignore
ignore
You were born...and so you're free...so Happy Birthday! Laurie Anderson
[link|mailto:bepatient@aol.com|BePatient]
Edited by bepatient
Dec. 18, 2002, 05:04:32 PM EST
|
Post #69,725
12/18/02 5:04:01 PM
|
Ok...so why doesn't this work anymore?
I tried <sarcasm>this</sarcasm> and [sarcasm]this[/sarcasm] and it didn't work.
You were born...and so you're free...so Happy Birthday! Laurie Anderson
[link|mailto:bepatient@aol.com|BePatient]
|
Post #69,733
12/18/02 5:22:55 PM
12/18/02 5:24:29 PM
|
here
[sarcasm] gives you this
[image|/forums/images/warning.png|0|This is sarcasm...]
Amateur!
[link|mailto:curley95@attbi.com|greg] - Grand-Master Artist in IT [link|http://www.iwethey.org/ed_curry/|REMEMBER ED CURRY!] [link|http://pascal.rockford.com:8888/SSK@kQMsmc74S0Tw3KHQiRQmDem0gAIPAgM/edcurry/1//|HIS GHOST SPEAKS!]
Your friendly Geheime Staatspolizei reminds: [link|http://www.wired.com/news/wireless/0,1382,56742,00.html|Wi-Fi enabled device use] comes with an all inclusive free trip to the (county)Photographer!
Why You ask? Here is the answer to your query: SELECT * FROM politicians WHERE iq > 40 OR \\ WHERE ego < 1048575; 0 rows found
|
Post #69,735
12/18/02 5:28:10 PM
12/18/02 5:29:18 PM
|
Busted?
I think the problem is that the height & width of the image are set to blank. From the source: height="" width="" This is causing the image to display as a single pixel in my current browser. Either the hieght/width attributes need to be set properly or left off the img tag.
Edited by ChrisR
Dec. 18, 2002, 05:29:18 PM EST
|
Post #69,738
12/18/02 5:31:34 PM
|
So after 3 edits...
...where none of them worked...
You think you could at least pull the "Amateur" comment.
You were born...and so you're free...so Happy Birthday! Laurie Anderson
[link|mailto:bepatient@aol.com|BePatient]
|
Post #69,743
12/18/02 5:50:19 PM
|
You saw the edits you jerk!!!
I was adding Text...
[sarcasm] gives you this result: [image|/forums/images/warning.png|0|This is sarcasm...]
Amateur Jackass! Indeed!
[link|mailto:curley95@attbi.com|greg] - Grand-Master Artist in IT [link|http://www.iwethey.org/ed_curry/|REMEMBER ED CURRY!] [link|http://pascal.rockford.com:8888/SSK@kQMsmc74S0Tw3KHQiRQmDem0gAIPAgM/edcurry/1//|HIS GHOST SPEAKS!]
Your friendly Geheime Staatspolizei reminds: [link|http://www.wired.com/news/wireless/0,1382,56742,00.html|Wi-Fi enabled device use] comes with an all inclusive free trip to the (county)Photographer!
Why You ask? Here is the answer to your query: SELECT * FROM politicians WHERE iq > 40 OR \\ WHERE ego < 1048575; 0 rows found
|
Post #69,783
12/18/02 9:46:42 PM
|
Well I never!
Well actually I have...but not here.
So now you tell me it works.
And all this time I just thought you were just being nice to me.[image|/forums/images/warning.png|0|This is sarcasm...]
You were born...and so you're free...so Happy Birthday! Laurie Anderson
[link|mailto:bepatient@aol.com|BePatient]
|
Post #69,798
12/18/02 11:30:49 PM
|
Ha <pause> Haaaa...
Me nice?
Now my Frickin Family (Mother's side) UNINVITED me to Christmas...
How's *THAT* strike you?
My "Uncle" decided it would make everyone "UNCOMFORTABLE". Him being the HR VP for the "local" branch of "Douche and Toilette"
Sounds fine to me. I never did like most family. I will write a letter to *ALL of THEM*.
As of Today, I have dis-associated myself from them... Including my mother which this actually CAME from!
[link|mailto:curley95@attbi.com|greg] - Grand-Master Artist in IT [link|http://www.iwethey.org/ed_curry/|REMEMBER ED CURRY!] [link|http://pascal.rockford.com:8888/SSK@kQMsmc74S0Tw3KHQiRQmDem0gAIPAgM/edcurry/1//|HIS GHOST SPEAKS!]
Your friendly Geheime Staatspolizei reminds: [link|http://www.wired.com/news/wireless/0,1382,56742,00.html|Wi-Fi enabled device use] comes with an all inclusive free trip to the (county)Photographer!
Why You ask? Here is the answer to your query: SELECT * FROM politicians WHERE iq > 40 OR \\ WHERE ego < 1048575; 0 rows found
|
Post #69,826
12/19/02 6:41:48 AM
|
Well.. there are some nieces & nephews
So I know whatcha mean (imagine being at a dinner table with, say - a CIEIO).
Besides, you know what they say about anyone with his Own Tektronix 454A...
When the rich assemble to concern themselves with the business of the poor, it is called Charity. When the poor assemble to concern themselves with the business of the rich, it is called Anarchy.
-Paul Richards
|
Post #71,075
12/27/02 10:38:01 AM
|
Are you serious?
If so, sorry to hear this, man...
--
We have only 2 things to worry about: That things will never get back to normal, and that they already have.
|
Post #71,090
12/27/02 12:55:49 PM
|
Yep...
I am serious, went to the Movies for the Holiday, after *MY* family had a great meal of Farm Raised roast goose with Cranbery-n-Orange sauce, yams (real ones not sweet potatoes), stuffing (with bacon and ham in it), garlic-n-cheese smashed potatoes, broccoli with pepperjack-cheese sauce, German Chocolate Cake with Hazelnut-Almond-Fudge Frosting, Banket, sauerkraut-n-sausage and last but not least Homemade Dark-Choclate Ice-Cream... MMMM....
Of course popcorn, candies or soda... not needed...
Saw "Santa Clause 2" and "Star Trek: Nemesis"... both were OK.
SC2 was fresher than ST:N.
ST:N, come on... how many times can you save the Earth from the Brink of Destruction using "The Ship". Pulling it out at the last moment... loosing a Primary Cast member with a "Replacement" "Found" during the chase.
Bah!
[link|mailto:curley95@attbi.com|greg] - Grand-Master Artist in IT [link|http://www.iwethey.org/ed_curry/|REMEMBER ED CURRY!] [link|http://pascal.rockford.com:8888/SSK@kQMsmc74S0Tw3KHQiRQmDem0gAIPAgM/edcurry/1//|ED'S GHOST SPEAKS!] | Your friendly Geheime Staatspolizei reminds: [link|http://www.wired.com/news/wireless/0,1382,56742,00.html| Wi-Fi Terrorism] comes with an all inclusive free trip to the local Hoosegow! | I'll never tell, my *overly-red* lips are sealed! *wink* *wink* |
|
Post #71,187
12/27/02 11:07:57 PM
|
Oh well
Let yourself go, just say it: "ST:N was total fucked-up shit". You'll feel better at once. :-)
--
We have only 2 things to worry about: That things will never get back to normal, and that they already have.
|
Post #136,594
1/19/04 11:48:31 PM
|
self closing tags
<sarcasm /> doesn't work as expected. :-(
Have fun, Carl Forde
|