SQL Inject - SecurityCheck Component

  • Wynand Louw
  • Topic Author
  • Offline
  • Elite Member
  • Elite Member
More
1 year 5 months ago #154607 by Wynand Louw
SQL Inject - SecurityCheck Component was created by Wynand Louw
Hi guys

J3.10.11
PHP7
Component: Events booking 4.3.0
Component: SecurityCheck 3.5.1
Get the following message on the site when clients register:
"Error" It has been detected a sequence that could mean a hacker attack. Your request can not be processed."

In the SecurityCheck logs, it is listed as "SQL Injection" and the component indicated is "com_content"

URL: /index.php/events?task=register.process_individual_registrat

The clients get quite upset about this and worry that the site is hacked. So something in the events booking is causing an issue since it only seems to be on the Joomla 3.10.11 site that I can pick this up. Not sure if it is a Joomla issue.

Thanks

Please Log in or Create an account to join the conversation.

  • Tuan Pham Ngoc
  • Away
  • Administrator
  • Administrator
More
1 year 5 months ago #154610 by Tuan Pham Ngoc
Replied by Tuan Pham Ngoc on topic SQL Inject - SecurityCheck Component
Hard to know. It could also comes from fall assumption from SecurityCheck, too

Is SecurityCheck provides any more details report? If Yes, please submit a support ticket sending me the details information so that I can check

Regards,

Tuan

Please Log in or Create an account to join the conversation.

  • Wynand Louw
  • Topic Author
  • Offline
  • Elite Member
  • Elite Member
More
1 year 5 months ago #154630 by Wynand Louw
Replied by Wynand Louw on topic SQL Inject - SecurityCheck Component
Detailed reports are only available in their Pro version, not the free one.

Please Log in or Create an account to join the conversation.

  • Tuan Pham Ngoc
  • Away
  • Administrator
  • Administrator
More
1 year 5 months ago #154632 by Tuan Pham Ngoc
Replied by Tuan Pham Ngoc on topic SQL Inject - SecurityCheck Component
Hmm

That's quite hard for me to check, then. Maybe you can submit a support ticket sending me super admin account of the site and tell me step by step what I need to do to see that error? I will try to check to see why it happens and get it sorted

Tuan

Please Log in or Create an account to join the conversation.

Moderators: Tuan Pham Ngoc