Death by lack of input validation



  • I may not be an expert on the game of hangman, but I don't think the player is supposed to be punished for guessing characters outside the alphabet being used.

    See the very bottom of http://www.elementsdatabase.com/

    And forum software should be responsible for converting URLs into real links 



  • @ailivac said:

    .....And forum software should be responsible for converting URLs into real links 

    I disagree



  • @ailivac said:

     

    And forum software should be responsible for converting URLs into real links

    "Boo-hoo-hoo!  I have to make my own link!"  Kids these days.


  • I haven't had any chemistry in many years, so I'm thankful for the helpful list up at the top of the page.



  • For those that still don't get it...

    Free Image Hosting at www.ImageShack.us



  • Seems fair to me.. if you're illiterate like that, you should just lose for putting symbols as tries. 



  • @darkmattar said:

    Seems fair to me.. if you're illiterate like that, you should just lose for putting symbols as tries. 

     

    indeed. 



  • Yeah, I'm gonna disagree with you, there. Hangman is all about punishment. (My brother and I used to penalize each other just for taking too long to guess.) I think giving the player more rope, so to speak, in the form of an extended character set is in keeping with the spirit of the game.



  • @ailivac said:

    I don't think the player is supposed to be punished for guessing characters outside the alphabet being used
    The player should be punished for every that isn't part of the target word.@ailivac said:
    And forum software should be responsible for converting URLs into real links
    Not all URLs are real links, e.g. "your file should now be accessible at http://localhost/path/to/your/app/index.htm"



  • @dgvid said:

    Hangman is all about punishment.
    Yeah, it's about execution, termination... (but not termination of execution... though it is execution of termination).  It's about giving them enough rope to hang themselves with.  Putting in unusual characters is asking for trouble :D



  • @ailivac said:

    And forum software should be responsible for converting URLs into real links 

    Given how screwed-up Community Server is, the less it's responsible for, the better.



  • Question: Why would you enter invalid chars? Its like going to the doctor and saying "Doctor, it hurs when I set my hand on fire, can you fix that?"

    There should be validation to prevent you from entering. There should be validation to not break the software at least, other then that, just let the user set themselves on fire and poke and laugh.


Log in to reply