LITTLEBLACKDOG.COM Forum Index LITTLEBLACKDOG.COM

 
LWD LWD   FAQ FAQ   Memberlist Memberlist   Usergroups Usergroups   Active Topics Active Topics   Register Register  
  Profile Profile   Log in to check your private messages Log in to check your private messages   Log in Log in  
  Who is Online Who is Online   Image Gallery Image Gallery   Chat Chat   Search Search  
  LWDGear       LBDGear  

View next topic
View previous topic
Post new topic     Reply to topic   LITTLEBLACKDOG.COM Forum Index » Site Feedback
Author Message
dstg_ll
-=* NSFW *=-
-=* NSFW *=-


Joined: 14 Jun 2002
Age: 31
Posts: 13837
Location: Black Pearl

Post Posted: Fri Dec 01, 2006 9:01 pm   Post subject: Problem with posting ? Reply with quote Back to top  

I'm getting a 403 Forbidden Error when i try to post something... will this work in here ?

EDIT: Well, it's working here, let's see in General Convo now...

EDIT #2: Yup, i only get that error in General Conversations in the Metallica thread. Here's the complete error.


Quote:
Forbidden
You don't have permission to access /posting.php on this server.

Additionally, a 404 Not Found error was encountered while trying to use an ErrorDocument to handle the request.
Apache/1.3.34 Server at www.littleblackdog.com Port 80

_________________
http://www.flickr.com/photos/dstg

Guy #1: Then You Post Those Fatties!
Guy #2: No can do. The forum limits attachments to 1600 x 1600.
View user's profile Send private message Visit poster's website
sully_51
Moderator
Moderator


Joined: 19 Jul 2003
Age: 24
Posts: 2053
Location: Kansas, USA

Post Posted: Fri Dec 01, 2006 9:10 pm   Post subject: Reply with quote Back to top  

Metallica thread works for me..

_________________
Sully

Trying to find my way around a dark life, always breaking the important things...
I only get angry at stupid people, and they have to be with themselves 24/7 so they already got theirs. - quijbe

RIP Kidneyman - 4/29/05
View user's profile Send private message Send e-mail Visit poster's website MSN Messenger
dstg_ll
-=* NSFW *=-
-=* NSFW *=-


Joined: 14 Jun 2002
Age: 31
Posts: 13837
Location: Black Pearl

Post Posted: Fri Dec 01, 2006 9:15 pm   Post subject: Reply with quote Back to top  

Heh, found the problem.

Type this

Code: Select all
CD ...


together(as in, CD followed by 3 periods, no space).. and click on Preview. You will get the error.

_________________
http://www.flickr.com/photos/dstg

Guy #1: Then You Post Those Fatties!
Guy #2: No can do. The forum limits attachments to 1600 x 1600.
View user's profile Send private message Visit poster's website
pdk68
Butt Sniffer
Butt Sniffer


Joined: 09 Nov 2000
Posts: 1883

Post Posted: Fri Dec 01, 2006 9:17 pm   Post subject: Reply with quote Back to top  

Looks like a bug in in the code.

As a side note should the "Site Feedback" forum not be made members only so if someone does find a bug and post it here it is not robotable?

Just a thought.
View user's profile Send private message Send e-mail
fathertyme
Site Admin
Site Admin


Joined: 30 Jun 2001
Posts: 6129
Location: The American Colonies

Post Posted: Fri Dec 01, 2006 9:58 pm   Post subject: Reply with quote Back to top  

ok.. thats really funky!

_________________
LWD web-cams: http://lwdcam.codecoma.com/?lwdcam
----

---
[9:08pm][09/16/2005]«+ flip » college...what is that
[9:08pm][09/16/2005]«+ Aff » apparently a place where you find rum
---
I used to live in my own little world, but they didn't like me there either.

You see dead people? I'm a software engineer, I don't see anybody!
---
My Amazon Wishlist
View user's profile Send private message Send e-mail Visit poster's website AIM Address Yahoo Messenger MSN Messenger ICQ Number
pdk68
Butt Sniffer
Butt Sniffer


Joined: 09 Nov 2000
Posts: 1883

Post Posted: Fri Dec 01, 2006 10:46 pm   Post subject: Reply with quote Back to top  

Well it doesn't work with cd\

I guess that's something.
View user's profile Send private message Send e-mail
EdisonRex
Guide Dog
Guide Dog


Joined: 06 May 2002
Posts: 9973
Location: Not Moscow

Post Posted: Sat Dec 02, 2006 1:39 am   Post subject: Reply with quote Back to top  

There are all sorts of those sort of disallowed phrases in phpBB, as far as I can tell. I found out a bunch of others but I can't type them here. Wink

_________________
Garret: It's so retro.
EGM: What does retro mean to you?
Parker: Like, old and outdated.
View user's profile Send private message AIM Address Yahoo Messenger
Extreme
Big Dog
Big Dog


Joined: 17 Jun 2001
Age: 28
Posts: 4376
Location: Palm Bay, Florida USA

Post Posted: Sat Dec 02, 2006 9:01 am   Post subject: Reply with quote Back to top  

EdisonRex wrote:
There are all sorts of those sort of disallowed phrases in phpBB, as far as I can tell. I found out a bunch of others but I can't type them here. Wink


But it actually looks like that the command is being ran. Otherwise wouldnt a PHP-BB error be generated and not a web server error document?

_________________
I ♥ my IT guy, do you?
View user's profile Send private message Send e-mail Visit poster's website AIM Address ICQ Number
EdisonRex
Guide Dog
Guide Dog


Joined: 06 May 2002
Posts: 9973
Location: Not Moscow

Post Posted: Sat Dec 02, 2006 9:12 am   Post subject: Reply with quote Back to top  

well, try typing a valid command or filename as the only item in the post.

_________________
Garret: It's so retro.
EGM: What does retro mean to you?
Parker: Like, old and outdated.
View user's profile Send private message AIM Address Yahoo Messenger
Extreme
Big Dog
Big Dog


Joined: 17 Jun 2001
Age: 28
Posts: 4376
Location: Palm Bay, Florida USA

Post Posted: Sat Dec 02, 2006 11:40 am   Post subject: Reply with quote Back to top  

[edited multiple times]I tested with a few commands and filenames and they posted just fine. The original item did cause the same issue[/edit]

_________________
I ♥ my IT guy, do you?
View user's profile Send private message Send e-mail Visit poster's website AIM Address ICQ Number
Extreme
Big Dog
Big Dog


Joined: 17 Jun 2001
Age: 28
Posts: 4376
Location: Palm Bay, Florida USA

Post Posted: Sat Dec 02, 2006 11:46 am   Post subject: Reply with quote Back to top  

I also find it odd that http://littleblackdog.com/posting.php is in the address bar, but it generates a 404 error.

When I access the same url directly it displays the normal site with the error message, No Posting Method Specified

What do the log files say regarding the error?

Quote:

Forbidden
You don't have permission to access /posting.php on this server.

Additionally, a 404 Not Found error was encountered while trying to use an ErrorDocument to handle the request.
Apache/1.3.34 Server at www.littleblackdog.com Port 80

_________________
I ♥ my IT guy, do you?
View user's profile Send private message Send e-mail Visit poster's website AIM Address ICQ Number
EdisonRex
Guide Dog
Guide Dog


Joined: 06 May 2002
Posts: 9973
Location: Not Moscow

Post Posted: Sat Dec 02, 2006 12:22 pm   Post subject: Reply with quote Back to top  

The log said the exact same thing.

_________________
Garret: It's so retro.
EGM: What does retro mean to you?
Parker: Like, old and outdated.
View user's profile Send private message AIM Address Yahoo Messenger
Extreme
Big Dog
Big Dog


Joined: 17 Jun 2001
Age: 28
Posts: 4376
Location: Palm Bay, Florida USA

Post Posted: Sat Dec 02, 2006 3:24 pm   Post subject: Reply with quote Back to top  

OK, did some research and found out the issue.

Apparently its at the host level, and them or the site choosing to use mod_security. When this is in use it prevents known server commands from being used. One way to bypass it is to modify your . htaccess file with the following:
Quote:
SecFilterEngine Off
SecFilterScanPOST Off


But you may want to check with your webhost first if you choose to bypass this security.

I was wondering why a PHP-BB error wasnt being generated....know I know why =D

_________________
I ♥ my IT guy, do you?
View user's profile Send private message Send e-mail Visit poster's website AIM Address ICQ Number
pdk68
Butt Sniffer
Butt Sniffer


Joined: 09 Nov 2000
Posts: 1883

Post Posted: Sat Dec 02, 2006 10:36 pm   Post subject: Reply with quote Back to top  

Sounds like a flaw in PHPBB, it shouldn't allow a system command to be executed from a post.
View user's profile Send private message Send e-mail
Extreme
Big Dog
Big Dog


Joined: 17 Jun 2001
Age: 28
Posts: 4376
Location: Palm Bay, Florida USA

Post Posted: Sun Dec 03, 2006 8:40 am   Post subject: Reply with quote Back to top  

pdk68 wrote:
Sounds like a flaw in PHPBB, it shouldn't allow a system command to be executed from a post.


Not really, its the mod_security processing anything submitted via post. And its not being executed, its just restricting that text from being used in the event of a security hole or etc.

PHP-BB cant filter it out since its done right at post time and wouldnt be able to process it...unless there was some javascript that ran client side.

_________________
I ♥ my IT guy, do you?
View user's profile Send private message Send e-mail Visit poster's website AIM Address ICQ Number
Display posts from previous:   
Post new topic     Reply to topic

View next topic
View previous topic
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum


Powered by phpBB © 2001, 2002 phpBB Group
phpBB SEO
All times are GMT - 8 Hours

Help us keep advertisements off this site. Donate today!