VirtueMart Advanced Server Security Questions

This forum is for general questions about extensions for Joomla! version 1.5.x.

Moderator: General Support Moderators

Forum rules
Forum Rules
Absolute Beginner's Guide to Joomla! <-- please read before posting, this means YOU.
Forum Post Assistant - If you are serious about wanting help, you will use this tool to help you post.
Locked
kremo5le
Joomla! Enthusiast
Joomla! Enthusiast
Posts: 122
Joined: Thu Jul 31, 2008 9:23 pm
Location: United States

VirtueMart Advanced Server Security Questions

Post by kremo5le » Wed Jan 04, 2012 7:18 pm

Hi guys,

In order for my client's site to comply with Security Metrics standards, I have to make sure I fix 2 issues they are pointing out. These are way over my head:

1. Possible blind sql injection here.

2. If you send a true and a false request, why is the server responding with different pages?

~ http://www.dellawards.com/components/co m_virtuemart/show_image_in_imgtag.php?amp=& ;filename=resized%2FBerkeley_4b53d0791ee8b _120x120.jpg+and+1%3D1

~ http://www.dellawards.com/components/co m_virtuemart/show_image_in_imgtag.php?amp=& ;filename=resized%2FBerkeley_4b53d0791ee8b _120x120.jpg+and+1%3D0

3. Vulnerable BIND version. Send use screen shot with evidence of update.

I have no clue on how to make sure these are fixed.

THANKS!

kremo5le
Joomla! Enthusiast
Joomla! Enthusiast
Posts: 122
Joined: Thu Jul 31, 2008 9:23 pm
Location: United States

Re: VirtueMart Advanced Server Security Questions

Post by kremo5le » Wed Jan 11, 2012 9:50 pm

I know it is a very advanced question. Hoping for someone who can help!


Locked

Return to “Extensions for Joomla! 1.5”