Notice

The forum is in read only mode.

Support Forum

Welcome! Support Forums have been reactivated
Welcome the Technical Support section. Help us in assisting you by providing us with a concise and descriptive elaboration of your issues. Be specific and if possible, provide us with a step-by-step instruction in replicating your problem.

Security Error

10 years 3 months ago
  • Alan's Avatar
    Topic Author
  • Alan
  • Offline
  • Fresh Boarder
  • Posts: 1
  • Thank you received: 0
Licenses:
JomSocial Active

Sorry, my english is very bad.

I Work with information security.
I found a flaw in all versions.
On my server, all errors (Error Reporting) and display errors are disabled in php.ini.
In addition, the Joomla settings are configured to not show error messages and found some errors
that are critical to the site.

Look:
Correct link: www.esecurity.com.br/.nsite2/social/sear...a%20Estrat%C3%A9gica

Injected characters
www.esecurity.com.br/.nsite2/social/search/field?FIELD_TITULO []=Intelig%C3%AAncia%20Estrat%C3%A9gica

Remember: In php.ini and configuration of Joomla all options are marked to not display errors

10 years 3 months ago
Licenses:

Hi Alan,

I visited that both links.
www.esecurity.com.br/.nsite2/social/sear...a%20Estrat%C3%A9gica
and
www.esecurity.com.br/.nsite2/social/search/field?FIELD_TITULO []=Intelig%C3%AAncia%20Estrat%C3%A9gica

always directed into this link: www.esecurity.com.br/index.php?option=co...t&view=article&id=41

i can't see any differences.

could you tell me what kind of flaw do you found? or there is error message (at server logs) ?

10 years 2 weeks ago
Licenses:

Hi,

Because this thread no respond for a long time. I assume has been resolved if not, you can respond this thread any times.

Regards,
Albert

Moderators: Piotr Garasiński
Powered by Kunena Forum

Join 180,000 websites creating Amazing communities

JomSocial is the most complete, easy-to-use addon that turns Joomla CMS into a
full -fledged, social networking site

TRY NOW BUY NOW