%
'****************************************************************************************
'** Copyright Notice
'**
'** Web Wiz Forums(TM)
'** http://www.webwizforums.com
'**
'** Copyright (C)2001-2008 Web Wiz(TM). All Rights Reserved.
'**
'** THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS UNDER LICENSE FROM 'WEB WIZ'.
'**
'** IF YOU DO NOT AGREE TO THE LICENSE AGREEMENT THEN 'WEB WIZ' IS UNWILLING TO LICENSE
'** THE SOFTWARE TO YOU, AND YOU SHOULD DESTROY ALL COPIES YOU HOLD OF 'WEB WIZ' SOFTWARE
'** AND DERIVATIVE WORKS IMMEDIATELY.
'**
'** If you have not received a copy of the license with this work then a copy of the latest
'** license contract can be found at:-
'**
'** http://www.webwizguide.com/license
'**
'** For more information about this software and for licensing information please contact
'** 'Web Wiz' at the address and website below:-
'**
'** Web Wiz, Unit 10E, Dawkins Road Industrial Estate, Poole, Dorset, BH15 4JD, England
'** http://www.webwizguide.com
'**
'** Removal or modification of this copyright notice will violate the license contract.
'**
'****************************************************************************************
'*************************** SOFTWARE AND CODE MODIFICATIONS ****************************
'**
'** MODIFICATION OF THE FREE EDITIONS OF THIS SOFTWARE IS A VIOLATION OF THE LICENSE
'** AGREEMENT AND IS STRICTLY PROHIBITED
'**
'** If you wish to modify any part of this software a license must be purchased
'**
'****************************************************************************************
'******************************************************
'*** Filters using 'HTML Secure (TM)' Technology *****
'******************************************************
'**********************************************
'*** Check HTML input for malicious code *****
'**********************************************
'Check input for tags and remove any that are not permitted for security reasons
Private Function HTMLsafe(ByVal strMessageInput)
Dim strTempHTMLMessage 'Temporary message store
Dim lngMessagePosition 'Holds the message position
Dim intHTMLTagLength 'Holds the length of the HTML tags
Dim strHTMLMessage 'Holds the HTML message
Dim strTempMessageInput 'Temp store for the message input
Dim lngLoopCounter 'Loop counter
Dim strHyperlink 'Holds hyperlinks
Dim strImageSrc 'Holds image src
Dim strImageHeight 'Holds image height
Dim strImageWidth 'Holds image Width
Dim strImageBorder 'Holds image Border
Dim strImageAlign 'Holds image Align
Dim strImageAlt
Dim strImageHSpace
Dim strImageVSpace
Dim strImageStyle
Dim strImageTitle
Dim intLoopCounter 'Holds the loop counter
'Include the array of unsafe HTML tags
%><%
'Strip scripting (this is just an extra check as these are stiped later (if in different format), but will give better formating of post if whole tag is striped now)
strMessageInput = Replace(strMessageInput, "", "", 1, -1, 1)
'Strip dodgy styles (can be used to inject CSS into a page for XSS hacking exploit)
strMessageInput = Replace(strMessageInput, "