RE: [PHP] malicious code removal
| From: | John Coggeshall | Date: | Sat, 22 Jul 2000 19:45:26 +0000 |
| Subject: | RE: [PHP] malicious code removal | ||
| References: | 1 | Groups: | php.general |
| Request: | Send a blank email to php-general+get-7663@lists.php.net to get a copy of this message | ||
strip_tags
strip_tags -- Strip HTML and PHP tags from a string
Description
string strip_tags(string str, string [allowable_tags] );
This function tries to strip all HTML and PHP tags from the given string. It
errors on the side of caution in case of incomplete or bogus tags. It uses
the same tag stripping state machine as the fgetss() function.
You can use the optional second parameter to specify tags which should not
be stripped.
-=-=-=-=-=-
That should take care of the HTML and PHP tags. And, if you take care of
HTML tags, you will take care of any scripting tags since they require a
<SCRIPT> tag to be executed.
John