Post by datalin » Sun Jun 10, 2012 10:03 am

hi Daniel,
opencart 1.5.2.1 bug like here description from http://www.waraxe.us/advisory-84.html is solved?

Newbie

Posts

Joined
Sun Jun 10, 2012 9:52 am

Post by krokodylowy3 » Mon Jun 11, 2012 1:11 am

If you see any problem with '../' in url's then add to .htaccess this lines at all.

#check for exploits and send all blocked request to homepage with 403 Forbidden error!
RewriteCond %{QUERY_STRING} \.\.\/ [OR]
RewriteCond %{QUERY_STRING} auto_prepend_file
RewriteRule ^(.*)$ - [F,L,NS]

Newbie

Posts

Joined
Fri May 18, 2012 2:39 am

Post by arames » Mon Jun 11, 2012 10:34 am

Thank you krokodylowy3,

but what do you mean by
If you see any problem with '../' in url's
And if I am NOT mistaken, AL can correct me here, but this Vulnerabilitie is JUST for host running on WINDOWS server, but I guess most of us here use Linux server, so arent effected I guess ..

Anticipated thx

New member

Posts

Joined
Fri Mar 09, 2012 8:27 pm
Who is online

Users browsing this forum: Bing [Bot] and 10 guests