mcian
23.02.2010, 15:47
Right after installation in to typo 4.3.2 i get this error message:
++
PHPIDS
Total impact: 16
Affected tags: xss, csrf, id, rfe, lfi
Variable: COOKIE.__utmz | Value: 145453743.1265992084.18.3.utmccn=(referral)|utmcsr =transferserver.jansass.com|utmcct=/cgi-bin/xchng.pl|utmcmd=referral
Impact: 16 | Tags: xss, csrf, id, rfe, lfi
Description: Detects JavaScript location/document property access and window access obfuscation | Tags: xss, csrf | ID: 23
Description: Detects common XSS concatenation patterns 1/2 | Tags: xss, csrf, id, rfe | ID: 30
Description: Detects unknown attack vectors based on PHPIDS Centrifuge detection | Tags: xss, csrf, id, rfe, lfi | ID: 67
Centrifuge detection data
Threshold: ---
Ratio: ---
Converted: ((+++:
Reporting to File (Threshold: 1)
Dieing... (Threshold: 0)
You have been logged out cause of a possible hacking attemp.
Your data has been stored and reported.
If you think this is an error please contact the webmaster of this website.
+++
i have no idea where to start debudding. the site uses realURL, maybe thats the problem?
++
PHPIDS
Total impact: 16
Affected tags: xss, csrf, id, rfe, lfi
Variable: COOKIE.__utmz | Value: 145453743.1265992084.18.3.utmccn=(referral)|utmcsr =transferserver.jansass.com|utmcct=/cgi-bin/xchng.pl|utmcmd=referral
Impact: 16 | Tags: xss, csrf, id, rfe, lfi
Description: Detects JavaScript location/document property access and window access obfuscation | Tags: xss, csrf | ID: 23
Description: Detects common XSS concatenation patterns 1/2 | Tags: xss, csrf, id, rfe | ID: 30
Description: Detects unknown attack vectors based on PHPIDS Centrifuge detection | Tags: xss, csrf, id, rfe, lfi | ID: 67
Centrifuge detection data
Threshold: ---
Ratio: ---
Converted: ((+++:
Reporting to File (Threshold: 1)
Dieing... (Threshold: 0)
You have been logged out cause of a possible hacking attemp.
Your data has been stored and reported.
If you think this is an error please contact the webmaster of this website.
+++
i have no idea where to start debudding. the site uses realURL, maybe thats the problem?