HTML Logo by World Wide Web Consortium (www.w3.org). Click to learn more about our commitment to accessibility and standards.

Moving forward with Composr

ocPortal has been relaunched as Composr CMS, which is now in beta. ocPortal 9 will be superseded by Composr 10.

Head over to compo.sr for our new site, and to our migration roadmap. Existing ocPortal member accounts have been mirrored.


Various problems and questions

Login / Search

 [ Join | More ]
 Add topic 
Posted
Rating:
#75766 (In Topic #15670)
Avatar

Fan in training

Problems with pictures, WYSIWYG Editor and hackers

Hi,
can anybody help me with these things, please?

1) Uploaded Images get their brightness modified automaticaly when displayed at dark themes, how to disable this?

2) I cannot change the standard Fontcolour of the WYSIWY get Editor, guess it's related to some standard Settings… I'am still able to modify this somehow using css?

3) Using Version 7.1.1 I was recently contacted by my Hosting Service, that I created several files with a bunch of GBs each, filling their Harddisk. Beside some very huge files they deleted on their own at the Servers temp folder (beeing called "ps7xsvmk" and "psdUnrkI") I also found the persistant cache to be unbelivable huge (close to 1GB) and a 4GB Backup File beeing created the Day I tried to delete old logfiles using the CMS tool. (i tried it twice, and the process never went through) Soo there probably Bugs with the logfile deleting tool and the persistant Cache.

4) I received 10 hack attempt E-Mails yesterday (see Below) Is there anything I should or can do?

An IP address, 92.243.16.2, has been automatically banned for generating 5 hackattack alerts. If you believe these were false alarms, or that the user was manipulated into triggering the alerts, you may wish to unban this IP address. A summary of the alerts follows:

A suspicious GET parameter was given (page as ../../../../../../../../../../../../..//proc/self/environ 00
) [/index.php?page=recommend&type=&page=../../../../../../../.
./../../../../..//proc/self/environ%0000]
A suspicious GET parameter was given (page as ../../../../../../../../../../../../..//proc/self/environ 00
) [/index.php?page=../../../../../../../../../../../../..//pro
c/self/environ%0000]
A suspicious GET parameter was given (page as ../../../../../../../../../../../../..//proc/self/environ 00
) [/index.php?page=&page=../../../../../../../../../../../../.
.//proc/self/environ%0000]
A suspicious GET parameter was given (page as ../../../../../../../../../../../../..//proc/self/environ 00
) [/index.php?page=../../../../../../../../../../../../..//pro
c/self/environ%0000]
A suspicious GET parameter was given (page as ../../../../../../../../../../../../..//proc/self/environ 00
) [/index.php?page=recommend&type=&page=../../../../../../../.
./../../../../..//proc/self/environ%0000]
A suspicious GET parameter was given (page as ../../../../../../../../../../../../..//proc/self/environ 00
) [/index.php?page=&page=../../../../../../../../../../../../.
.//proc/self/environ%0000]

5 minutes later:

An IP address, 213.5.177.120, has been automatically banned for generating 5 hackattack alerts. If you believe these were false alarms, or that the user was manipulated into triggering the alerts, you may wish to unban this IP address. A summary of the alerts follows:

A suspicious GET parameter was given (page as ../../../../../../../../../../../../..//proc/self/environ 00
) [/index.php?page=recommend&type=&page=../../../../../../../.
./../../../../..//proc/self/environ%0000]
A suspicious GET parameter was given (page as ../../../../../../../../../../../../..//proc/self/environ 00
) [/index.php?page=../../../../../../../../../../../../..//pro
c/self/environ%0000]
A suspicious GET parameter was given (page as ../../../../../../../../../../../../..//proc/self/environ 00
) [/index.php?page=recommend&type=&page=../../../../../../../.
./../../../../..//proc/self/environ%0000]
A suspicious GET parameter was given (page as ../../../../../../../../../../../../..//proc/self/environ 00
) [/index.php?page=&page=../../../../../../../../../../../../.
.//proc/self/environ%0000]
A suspicious GET parameter was given (page as ../../../../../../../../../../../../..//proc/self/environ 00
) [/index.php?page=../../../../../../../../../../../../..//pro
c/self/environ%0000]
A suspicious GET parameter was given (page as ../../../../../../../../../../../../..//proc/self/environ 00
) [/index.php?page=&page=../../../../../../../../../../../../.
.//proc/self/environ%0000]


Thanks for advice!
Back to the top
 
Posted
Rating:
#75767
Avatar

Community saint

If someone try to use the GET code, there is a serious hack attempt. Your ISP can do something to secure this GET code. Its server related. But the ocportal security has block this attempt.


http://digiflash.nl Photo community  (dutch)
Back to the top
 
Posted
Rating:
#75789
Avatar

1- Some browsers differ in how Gamma settings in PNG files are displayed. Putting them through a PNG optimiser usually helps. You also may be thinking about the fade effect used in IMG_THUMB.tpl/the img_thumb CSS class. I'm sure other users can go into more detail if needed.

3- The stats delete thing is definitely a bug. We'll fix, but you can workaround it by manually emptying the 'stats' table. As for the persistant cache, I can check it out but I'll need you to send a random sampling of the persistant cache files to chris@ocportal.com so that I can see what particular thing is running out of control in there.


Become a fan of ocPortal on Facebook or add me as a friend. Add me on on Twitter.
Was I helpful?
  • If not, please let us know how we can do better (please try and propose any bigger ideas in such a way that they are fundable and scalable).
  • If so, please let others know about ocPortal whenever you see the opportunity.
  • If my reply is too Vulcan or expressed too much in business-strategy terms, and not particularly personal, I apologise. As a company & project maintainer, time is very limited to me, so usually when I write a reply I try and make it generic advice to all readers. I'm also naturally a joined-up thinker, so I always express my thoughts in combined business and technical terms. I recognise not everyone likes that, don't let my Vulcan-thinking stop you enjoying ocPortal on fun personal projects.
  • If my response can inspire a community tutorial, that's a great way of giving back to the project as a user.
Back to the top
 
Posted
Rating:
#75864
Avatar

Honoured member

3 - It's just fixed. See here: Persistant Cache filling up

Simply upgrade to the latest version of ocPortal and that's it :)

ANDROMEDA - Das junge Beobachterforum :)
Back to the top
 
Posted
Rating:
#76001
Avatar

Regarding 1) (the faded images), you can turn off the option to automatically fade image thumbnails by going to this section of your Admin Zone: Setup Configuration Theme options General.


Like ocPortal on Facebook:
Back to the top
 
1 guests and 0 members have just viewed this: None
Control functions:

Quick reply   Contract

Your name:
Your message: