Products

Solutions

Resources

Partners

Community

Blog

About

QA

Ideas Test

New Community Website

Ordinarily, you'd be at the right spot, but we've recently launched a brand new community website... For the community, by the community.

Yay... Take Me to the Community!

Welcome to the DNN Community Forums, your preferred source of online community support for all things related to DNN.
In order to participate you must be a registered DNNizen

HomeHomeUsing DNN Platf...Using DNN Platf...Administration ...Administration ...A potentially dangerous Request.Cookies value was detected from the client (DNNPersonalization="A potentially dangerous Request.Cookies value was detected from the client (DNNPersonalization="
Previous
 
Next
New Post
3/22/2010 12:47 PM
 

The following issue was kind of touched in the DNN forum but not explained. May be some of you could tell me why this happens and what to do against it other than deleting cookies.

On my test machine I am running a DNN site and several other .NET 2.0/3.5 websites (which are non-DNN sites). From an IIS standpoint all sites are subsites of the default application meaning all sites are not differentiated by IP, host header or port. They just run as localhost/DNN-site OR localhost/OTHER-site etc.

I am explaining this just to give you an idea about the environment.

SO, when I pull-up localhost/OTHER-site I am getting the ERROR:

A potentially dangerous Request.Cookies value was detected from the client (DNNPersonalization="<profile><item key="...").

MY QUESTION: WHY? Aren't the sites under localhost completely separated because they run as a application with starting-point beneath localhost? Why is the DNN cookie read?

Would that phenomena with the cookies also occur on my production server Win2008 or 2003 where websites certainly do run as a real separate application (meaning not a sub application of the default site like on my test machine)?

 
New Post
3/22/2010 12:59 PM
 

AFAIK cookies work at the domain level by default, so any application running under the same domain (in this case localhost) could potentially access those cookies. 


Chris Hammond
Former DNN Corp Employee, MVP, Core Team Member, Trustee
Christoc.com Software Solutions DotNetNuke Module Development, Upgrades and consulting.
dnnCHAT.com a chat room for DotNetNuke discussions
 
New Post
3/22/2010 1:26 PM
 

Thanks Chris,

I was hoping you would say this because it was the only reason I could think of but I wasn't sure.

regards

Frank

 
New Post
9/29/2010 6:00 PM
 
I am having the same issue with my local copies of externally hosted DNN sites. Of three installs, one works properly (http://localhost/sitename01) , One worked properly yesterday, and two worked properly for a couple of days last week, but, like the second site, began giving me this error - What do I do about it? Thanks
 
New Post
9/29/2010 6:16 PM
 
Solved it by deleting the domain cookies (Firefox - Web Developer Plug-in)
 
Previous
 
Next
HomeHomeUsing DNN Platf...Using DNN Platf...Administration ...Administration ...A potentially dangerous Request.Cookies value was detected from the client (DNNPersonalization="A potentially dangerous Request.Cookies value was detected from the client (DNNPersonalization="


These Forums are dedicated to discussion of DNN Platform and Evoq Solutions.

For the benefit of the community and to protect the integrity of the ecosystem, please observe the following posting guidelines:

  1. No Advertising. This includes promotion of commercial and non-commercial products or services which are not directly related to DNN.
  2. No vendor trolling / poaching. If someone posts about a vendor issue, allow the vendor or other customers to respond. Any post that looks like trolling / poaching will be removed.
  3. Discussion or promotion of DNN Platform product releases under a different brand name are strictly prohibited.
  4. No Flaming or Trolling.
  5. No Profanity, Racism, or Prejudice.
  6. Site Moderators have the final word on approving / removing a thread or post or comment.
  7. English language posting only, please.
What is Liquid Content?
Find Out
What is Liquid Content?
Find Out
What is Liquid Content?
Find Out