OpenCart 1.5.2 Exploits?
8 posts
• Page 1 of 1
OpenCart 1.5.2 Exploits?
Is this valid? http://www.exploit-db.com/exploits/18813/
Someone needs to address this... Making OC look bad which makes us look bad because we use it.
Someone needs to address this... Making OC look bad which makes us look bad because we use it.
Last edited by i2Paq on Fri May 18, 2012 8:46 am, edited 4 times in total.
Reason: Split and renamed
Reason: Split and renamed
- disgruntled
- Posts: 12
- Joined: Tue Mar 13, 2012 8:31 pm
Re: OpenCart 1.5.2 Bug Thread
disgruntled wrote:Is this valid? http://www.exploit-db.com/exploits/18813/
Someone needs to address this... Making OC look bad which makes us look bad because we use it.
Yeah, they are valid under described configurations.
|V|355 \/\/17|-| 7}{3 |3357, ... [you know the rest]
Commercial mods: Admin Quick Edit PRO - Product Downloads PRO - Custom Product Tab PRO - Product Questions & Answers - New! Endless scroller / Infinte scrolling
All mods & extensions by me
Commercial mods: Admin Quick Edit PRO - Product Downloads PRO - Custom Product Tab PRO - Product Questions & Answers - New! Endless scroller / Infinte scrolling
All mods & extensions by me
- bull5-i
- Posts: 329
- Joined: Tue Jan 11, 2011 12:49 pm
Re: OpenCart 1.5.2 Bug Thread
disgruntled wrote:Is this valid? http://www.exploit-db.com/exploits/18813/
Someone needs to address this... Making OC look bad which makes us look bad because we use it.
99% of them are not. the windows one maybe possible. also i have added fixes for some of what this guy posted in the svn.
just make sure your download directory has the correct permissions of CHMOD 755 and not 777. which is read and write but not execute.
OpenCart®
Project Owner & Developer.
OpenCart commercial support now available!
Project Owner & Developer.
OpenCart commercial support now available!
-

Daniel - Administrator
- Posts: 5173
- Joined: Fri Nov 03, 2006 10:57 am
OpenCart 1.5.2 Bug Thread
krokodylowy3 wrote:Exploits succesfully attacks OC sites (1.5.2.2)
More viewtopic.php?f=161&t=63607
Config.php shuld be better secured by default.
http://blog.spiderlabs.com/2012/05/hone ... -vuln.html
http://eindbazen.net/2012/05/php-cgi-ad ... 2012-1823/
this is for php not specific not opencart. we have no control of the development of php and your an idiot to suggest this is related to opencart.
OpenCart®
Project Owner & Developer.
OpenCart commercial support now available!
Project Owner & Developer.
OpenCart commercial support now available!
-

Daniel - Administrator
- Posts: 5173
- Joined: Fri Nov 03, 2006 10:57 am
Re: OpenCart 1.5.2 Bug Thread
Daniel wrote:krokodylowy3 wrote:Exploits succesfully attacks OC sites (1.5.2.2)
More viewtopic.php?f=161&t=63607
Config.php shuld be better secured by default.
http://blog.spiderlabs.com/2012/05/hone ... -vuln.html
http://eindbazen.net/2012/05/php-cgi-ad ... 2012-1823/
this is for php not specific not opencart. we have no control of the development of php and your an idiot to suggest this is related to opencart.
sure, it's NEVER your fault! btw, who is the real idiot ?
- heinzchen
- Posts: 37
- Joined: Mon Jul 11, 2011 9:38 am
Re: OpenCart 1.5.2 Bug Thread
heinzchen wrote:sure, it's NEVER your fault! btw, who is the real idiot ?
Please temper yourself.
If you read what these link are about it is related ONLY to php, that is a server related part where OpenCart has no control over.
It is a known vulnerability and the official fix is not fix what so ever. There are third party better fixes, please use Google or ask your hoster.
Make sure you have setup you file and directory security as advised. There are plenty topics on how this should be done on our forums.
Norman in 't Veldt
Moderator OpenCart Forums
_________________ READ and Search BEFORE POSTING _________________
Our FREE search: Find your answer FAST!.
First Things First: Opencart Check List.
Documentation: Our Documentation section.
BUGs?: Known BUGS for All OC Versions.
Problemen met de BTW?: [How to] BTW + Verzend & betaalmethodes.
Moderator OpenCart Forums
_________________ READ and Search BEFORE POSTING _________________
Our FREE search: Find your answer FAST!.
First Things First: Opencart Check List.
Documentation: Our Documentation section.
BUGs?: Known BUGS for All OC Versions.
Problemen met de BTW?: [How to] BTW + Verzend & betaalmethodes.
-

i2Paq - Global Moderator
- Posts: 9760
- Joined: Mon Nov 09, 2009 11:00 am
- Location: Winkel - The Netherlands
Re: OpenCart 1.5.2 Bug Thread
i2Paq wrote:heinzchen wrote:sure, it's NEVER your fault! btw, who is the real idiot ?
Please temper yourself.
If you read what these link are about it is related ONLY to php, that is a server related part where OpenCart has no control over.
It is a known vulnerability and the official fix is not fix what so ever. There are third party better fixes, please use Google or ask your hoster.
Make sure you have setup you file and directory security as advised. There are plenty topics on how this should be done on our forums.
Daniel wrote: ... and your an idiot to suggest this is related to opencart.
Right, but what do you think of that? I think this is pathetic!
- heinzchen
- Posts: 37
- Joined: Mon Jul 11, 2011 9:38 am
Re: OpenCart 1.5.2 Bug Thread
heinzchen wrote:Daniel wrote: ... and your an idiot to suggest this is related to opencart.
Right, but what do you think of that? I think this is pathetic!
I agree there is a better way of communication.
Don't forget that "we", Moderators and all, see a lot of topics about hacks and other stuff that in the end turn out not to be OpenCart related.
If it is OpenCart related there is no problem in discussing this, if it is related to parts not OpenCart related then we ask you to discus this elsewhere because these forums will be off topic within days.
Norman in 't Veldt
Moderator OpenCart Forums
_________________ READ and Search BEFORE POSTING _________________
Our FREE search: Find your answer FAST!.
First Things First: Opencart Check List.
Documentation: Our Documentation section.
BUGs?: Known BUGS for All OC Versions.
Problemen met de BTW?: [How to] BTW + Verzend & betaalmethodes.
Moderator OpenCart Forums
_________________ READ and Search BEFORE POSTING _________________
Our FREE search: Find your answer FAST!.
First Things First: Opencart Check List.
Documentation: Our Documentation section.
BUGs?: Known BUGS for All OC Versions.
Problemen met de BTW?: [How to] BTW + Verzend & betaalmethodes.
-

i2Paq - Global Moderator
- Posts: 9760
- Joined: Mon Nov 09, 2009 11:00 am
- Location: Winkel - The Netherlands
8 posts
• Page 1 of 1
Who is online
Users browsing this forum: Webmart and 24 guests













