Site Links
Home
Features
Documentation
Pricing & Order
Members Area
Support Options
UBBDev.com
UBBWiki.com
Who's Online
1 registered (driv), 37 Guests and 16 Spiders online.
Key: Admin, Global Mod, Mod
Featured Member
Registered: 05/10/05
Posts: 1
Top Posters (30 Days)
Ruben 49
DennyP 24
Gizmo 23
Dunny 17
SteveS 14
AllenAyres 12
dbremer 10
drkknght00 9
SD 9
driv 8
Latest Photos
OK Corral Shoot Out
Testing
Basildon Train Station
Basildon Town Centre looking from the rounderbout
Basildon Town Square
Page 4 of 8 < 1 2 3 4 5 6 7 8 >
Topic Options
#172915 - 01/10/07 03:37 AM Re: A few Q's [Re: Gizmo]
ntdoc Offline
Registered: 11/09/06
Posts: 3384
SSH lets me run CAT and TOP etc... My new account seems to run on a fairly good box with low usage at the moment.

.
Top
Express Hosting
Express Hosting "We are the official hosting company of UBB.threads. Ask us about our free migration services to migrate your UBB.threads installation."
#172918 - 01/10/07 06:26 AM Re: A few Q's [Re: ntdoc]
Gizmo Offline

Registered: 06/05/06
Posts: 14994
Loc: Portland, OR; USA
 Originally Posted By: ntdoc
SSH lets me run CAT and TOP etc... My new account seems to run on a fairly good box with low usage at the moment.
That's SSH, we're talking about the apache Mod_Security module which doesn't allow some webpages to load (or forms to be submitted) if they contain some strings (such as CAT, TOP, SAR, etc)
_________________________
Forums: UGN Security & VNC Web Design & Development
UBB.Threads: UBB.Wiki, My UBBSkins, UBB.Sitemaps
Longtime UBB Supporter, UBB Beta Tester & Resident Post-A-Holic.
UBB Modifications, Styling, Coding Services, Disaster Recovery, and more!
Top
#172951 - 01/10/07 04:05 PM Re: A few Q's [Re: Gizmo]
ntdoc Offline
Registered: 11/09/06
Posts: 3384
Okay, but then curious how one would use a PUT statement to a page to run a CAT command?

I'm not a Webmaster and have not tried to hack a Linux box, so curious how that is an issue.

.
Top
#172987 - 01/10/07 06:34 PM Re: A few Q's [Re: ntdoc]
Gizmo Offline

Registered: 06/05/06
Posts: 14994
Loc: Portland, OR; USA
'eh you type: "cat wash" and it puts it on the page, anytime something is entered with the string it errors.

If you think to some phpbb issues in the past you can see why this is used, they allowed users to indicate commands which would relay the output to the browser, so you could index.php?style=cat%20/etc/shadowed and it'd display the contents of the file you're looking for... pretty dirty.
_________________________
Forums: UGN Security & VNC Web Design & Development
UBB.Threads: UBB.Wiki, My UBBSkins, UBB.Sitemaps
Longtime UBB Supporter, UBB Beta Tester & Resident Post-A-Holic.
UBB Modifications, Styling, Coding Services, Disaster Recovery, and more!
Top
#173006 - 01/10/07 07:04 PM Re: A few Q's [Re: Gizmo]
ntdoc Offline
Registered: 11/09/06
Posts: 3384
Doh! so simple I couldn't see the forest due to all the trees.

Thanks
Top
#173043 - 01/11/07 12:57 AM Re: A few Q's [Re: ntdoc]
Gizmo Offline

Registered: 06/05/06
Posts: 14994
Loc: Portland, OR; USA
lol np ;\)
_________________________
Forums: UGN Security & VNC Web Design & Development
UBB.Threads: UBB.Wiki, My UBBSkins, UBB.Sitemaps
Longtime UBB Supporter, UBB Beta Tester & Resident Post-A-Holic.
UBB Modifications, Styling, Coding Services, Disaster Recovery, and more!
Top
#174091 - 01/17/07 07:13 PM Re: A few Q's [Re: Gizmo]
DieselRam.com Offline
newbie
Registered: 01/04/07
Posts: 26
Loc: Denver , Colorado
Rehashing this 404 Forbidden garbage.

Must be computor illiterate but where do I install this?


.htaccess file under your forums folder (create .htaccess if there isn't
one),

SecFilterEngine Off
SecFilterScanPOST Off
_________________________
Webmaster
www.DieselRam.com
Top
#174100 - 01/17/07 08:44 PM Re: A few Q's [Re: DieselRam.com]
Gizmo Offline

Registered: 06/05/06
Posts: 14994
Loc: Portland, OR; USA
Generally your .htaccess file would be in your web root (the bottom most directory which can be accessed from the web).

Files that start with a . are marked as "hidden" so you'll need to make sure that you have an FTP client that is capable of listing "hidden files".

Generally most hosts include a basic .htaccess file, if one is not presant, just save your input to a file (any name will do) and upload it to your webspace, and rename it to .htaccess.

The reason I say to rename the file on the server is because Windows does not like files that start with a .

Also, use of .htaccess files only work for Apache webservers.
_________________________
Forums: UGN Security & VNC Web Design & Development
UBB.Threads: UBB.Wiki, My UBBSkins, UBB.Sitemaps
Longtime UBB Supporter, UBB Beta Tester & Resident Post-A-Holic.
UBB Modifications, Styling, Coding Services, Disaster Recovery, and more!
Top
#174107 - 01/17/07 08:53 PM Re: A few Q's [Re: Gizmo]
ntdoc Offline
Registered: 11/09/06
Posts: 3384
Your host has to also enable .htaccess files for your site from my understanding of it (most seem to allow it).
Top
#174108 - 01/17/07 08:55 PM Re: A few Q's [Re: ntdoc]
Gizmo Offline

Registered: 06/05/06
Posts: 14994
Loc: Portland, OR; USA
Likely the permissions for .htaccess will be "basic", I'm not sure if you'd be able to disable these elements in this mode... But theres only one way to find out lol..
_________________________
Forums: UGN Security & VNC Web Design & Development
UBB.Threads: UBB.Wiki, My UBBSkins, UBB.Sitemaps
Longtime UBB Supporter, UBB Beta Tester & Resident Post-A-Holic.
UBB Modifications, Styling, Coding Services, Disaster Recovery, and more!
Top
Page 4 of 8 < 1 2 3 4 5 6 7 8 >



Moderator:  AllenAyres, Harold, Ian, Ron M 
Shout Box

Today's Birthdays
No Birthdays
Recent Topics
Ability to "like" individual posts (not Facebook "likes)
by doug
05/23/12 09:03 AM
Island Permissions
by ThreadsUser
05/22/12 03:03 PM
streaming video
by prkrgrp
05/20/12 07:02 PM
New Posts Corrupted? Can someone help?
by PianoWorld
05/19/12 09:41 AM
Custom forum permissions
by ntdoc
05/18/12 02:07 PM
Forum Stats
10489 Members
36 Forums
33841 Topics
181696 Posts

Max Online: 978 @ 06/24/07 11:19 PM
Random Image