searchTerm = request.getParameter("search");
searchTerm = searchTerm.replaceAll("<", "<").replaceAll(">", ">");
searchTerm = searchTerm.replaceAll("[^A-Za-z0-9 ]", "");
searchTerm = searchTerm.replaceAll("eval\\((.*)\\)", "");
searchTerm = searchTerm.replaceAll("[\\\"\\\'][\\s]*((?i)javascript):(.*)[\\\"\\\']", "\"\"");
searchTerm = searchTerm.replaceAll("((?i)script)", "");
searchTerm = searchTerm.replaceAll("<", "& lt;").replaceAll(">", "& gt;");
searchTerm = searchTerm.replaceAll("\\(", "& #40;").replaceAll("\\)", "& #41;");
searchTerm = searchTerm.replaceAll("'", "& #39;");
searchTerm = searchTerm.replaceAll("script", "");
searchTerm = searchTerm.replaceAll("<", "& lt;").replaceAll(">", "& gt;");
searchTerm = searchTerm.replaceAll("\\(", "& #40;").replaceAll("\\)", "& #41;");
searchTerm = searchTerm.replaceAll("'", "& #39;");
searchTerm = searchTerm.replaceAll("eval\\((.*)\\)", "");
searchTerm = searchTerm.replaceAll("[\\\"\\\'][\\s]*javascript<b></b>:(.*)[\\\"\\\']", "\"\"");
searchTerm = searchTerm.replaceAll("script", "");