SQL_Injection_hack
|
Posted
#71018
(In Topic #14986)
|
|
|---|---|
|
Community saint |
|
|
Posted
|
|
|
ocStaff (admin) |
Could you forward the hack-attack notification that would have been sent to your staff address to chris@ocportal.com. If I answered something that you think should be in the documentation, please take the initiative and add it to the community documentation. We really need people to help out here and build a well-organised large support resource. |
|
Posted
|
|
|
Community saint |
I just forwarded the message to you. Thanks, Keith |
|
Posted
|
|
|
Community saint |
I found the problem. It was an advertisement function from Forbes.com. Once I removed the offending post in the forum, all was right with the world, again. I have just completed an upgrade to 7.1. I have just a few issues with my old theme, and once that is done, the world will continue to spin on its axis once again, and we can all begin to breath naturally. Thank you so very much for all the great work you do with OCP. I recommend OCP every chance I get. The flexibility of your script is phenomenal. Regards, psydoc (Keith) |
|
Posted
|
|
|
Community saint |
WB Keith. Been absent for too long, but there again, if you are mixing with the 'Forbes Rich' it is probably understandable!
Take my advice. I'm not using it!
View my working ocPortal site (version 9.x.x) at Anglo-Indian Portal |
|
Posted
|
|
|
Community saint |
Hey Fletch, Unfortunately, I don't mix with the 'Forbes Rich', I just post articles from there, once in a while. Thanks for the welcome. I hope everything is going well with you, and everyone at OCP. |
|
Posted
|
|
|
Community saint |
|
|
Posted
|
|
|
Community saint |
The 13th is …
Take my advice. I'm not using it!
View my working ocPortal site (version 9.x.x) at Anglo-Indian Portal |
|
Posted
|
|
|
Community saint |
I would love to post those. Do you still have my email? |
|
Posted
|
|
|
Community saint |
Take my advice. I'm not using it!
View my working ocPortal site (version 9.x.x) at Anglo-Indian Portal |
|
Posted
|
|
|
Community saint |
I love your site. You have done a lot with it since I looked at it last. |
|
Posted
|
|
|
ocStaff (admin) |
If I answered something that you think should be in the documentation, please take the initiative and add it to the community documentation. We really need people to help out here and build a well-organised large support resource. |
|
Posted
|
|
|
ocStaff (admin) |
Didn't Save Union Jobs because the apostrophe in the query looks like a string section is being ended then 'union' is SQL to join queries together (hackers often use it to inject malicious queries). I'll see if we can make the scanner smarter here. If I answered something that you think should be in the documentation, please take the initiative and add it to the community documentation. We really need people to help out here and build a well-organised large support resource. |
|
Posted
|
|
|
ocStaff (admin) |
Look for the SQL_INJECTION_HACK line in sources/database.php and change to: Code
If I answered something that you think should be in the documentation, please take the initiative and add it to the community documentation. We really need people to help out here and build a well-organised large support resource. |
|
Posted
|
|
|
Community saint |
I think I understand that. Is my understanding correct? At any rate, Chris, you and the OCP staff never cease to amaze. |
|
Posted
|
|
|
ocStaff (admin) |
If I answered something that you think should be in the documentation, please take the initiative and add it to the community documentation. We really need people to help out here and build a well-organised large support resource. |
|
Posted
|
|
|
Community saint |
|
|
Posted
|
|
|
Community saint |
They are amazing. I'm beginning to wonder if they ever sleep or if we are really dealing with some seriously-evolved automatons. Bob |
|
Posted
|
|
|
Community saint |
|
1 guests and 0 members have just viewed this: None
Control functions:







