Menu

Search

InstantASP Support

Help & Support


A potentially dangerous Request.Form value was detected


Known Issues

When creating new articles within InstantKB or posting new topics within InstantForum you may receive the following error message.

"A potentially dangerous Request.Form value was detected from the client".

This is a standard ASP.NET security feature called request validation. You can read more on this here…
http://www.asp.net/learn/whitepapers/request-validation

Whilst we do already set request validation to false by default within both the InstantForum & InstantKB web.config it could be you encounter this error if you've modified the web.config via IIS or you are using an alternative web.config.

Resolution

You need to disable requestValidation from within the web.config file. We provide our own protection for all user input against XSS or SQL injection attacks.

Please ensure the validateRequest attribute is present within your <pages/> element and is set to false…

<pages validateRequest="false" />

ASP.NET 4.0

If your using InstantKB under .NET 4.0 you will need to add the below attribute to your web.config. InstantFrum 2013 contains this attribute by default so does not require any changes,. 
For ASP.NET 4.0 installations you'll need ensure the <httpRuntime> element contains the attribute shown below...

<httpRuntime requestValidationMode="2.0" />

See this whitepaper for more information.

That's It!

I hope this information helps. As always if you have any questions please don't hesitate to contact us.


Optionally provide private feedback to help us improve this article...

Thank you for your feedback!


Comments

No Photo
0
Bryan N posted 6 Years Ago
New Member with 0 recognition pointsNew Member with 0 recognition pointsNew Member with 0 recognition pointsNew Member with 0 recognition pointsNew Member with 0 recognition pointsNew Member with 0 recognition pointsNew Member with 0 recognition pointsNew Member with 0 recognition points
Thanks so much Ryan. I knew it had to be an easy answer.<br />

Comments require login or registration.

Details

Product: InstantKB, InstantForum
Version: All Versions
Type: ERRMSG
Level: Novice
Rated 1 star based on 6 votes.
Article has been viewed 10K times.
Last Modified: 7 Years Ago
Last Modified By: Ryan Healey

Options

Similar Articles


Tags