Skip to Content Skip to Menu

🎃 Happy Halloween! Treat yourself with an awesome discount on memberships! Get 20% off now with code SPOOKY-2024!

CB Query Field 403 error

9 years 2 months ago #269819 by Thelowlandpiper
CB Query Field 403 error was created by Thelowlandpiper
I'm trying to set up a country query field as per previous instructions on this forum. When i try to save the query I get a 403 Access Forbidden error; Jooma 3.4; Cb countries table installed

Please Log in or Create an account to join the conversation.

9 years 2 months ago #269821 by Thelowlandpiper
Replied by Thelowlandpiper on topic CB Query Field 403 error
Just noticed this message with debug set:
Notice: Undefined index: profile_viewaccesslevel in .../components/com_comprofiler/plugin/user/plug_cbprivacy/cbprivacy.php on line 687

tried setting this to All Levels [it was 'Disable']; makes no difference

Please Log in or Create an account to join the conversation.

  • krileon
  • krileon
  • ONLINE
  • Posts: 48472
  • Thanks: 8280
  • Karma: 1443
9 years 2 months ago #269831 by krileon
Replied by krileon on topic CB Query Field 403 error

I'm trying to set up a country query field as per previous instructions on this forum. When i try to save the query I get a 403 Access Forbidden error; Jooma 3.4; Cb countries table installed

How many fields do you have? You maybe hitting your database limit. However, it sounds maybe like a mod_security issue. Please contact your host to see if mod_security could be accidentally flagging.

Just noticed this message with debug set:
Notice: Undefined index: profile_viewaccesslevel in .../components/com_comprofiler/plugin/user/plug_cbprivacy/cbprivacy.php on line 687

There's nothing regarding that index on that line. Please ensure you've latest releases of all our plugins. See the below for compatibility chart.

www.joomlapolis.com/cb-20-addon-status


Kyle (Krileon)
Community Builder Team Member
Before posting on forums: Read FAQ thoroughly + Read our Documentation + Search the forums
CB links: Documentation - Localization - CB Quickstart - CB Paid Subscriptions - Add-Ons - Forge
--
If you are a Professional, Developer, or CB Paid Subscriptions subscriber and have a support issue please always post in your respective support forums for best results!
--
If I've missed your support post with a delay of 3 days or greater and are a Professional, Developer, or CBSubs subscriber please send me a private message with your thread and will reply when possible!
--
Please note I am available Monday - Friday from 8:00 AM CST to 4:00 PM CST. I am away on weekends (Saturday and Sunday) and if I've missed your post on or before a weekend after business hours please wait for the next following business day (Monday) and will get to your issue as soon as possible, thank you.
--
My role here is to provide guidance and assistance. I cannot provide custom code for each custom requirement. Please do not inquire me about custom development.

Please Log in or Create an account to join the conversation.

9 years 2 months ago #269836 by Thelowlandpiper
Replied by Thelowlandpiper on topic CB Query Field 403 error
I set mod_security to Detect Mode and the field was saved successfully; I have returned the setting to Active. I presume that this is due to the inserting of an SQL query into the data table; "Warning. detected SQLi using libinjection with fingerprint 'Enknk'"; Possible SQL injection attack (detectSQLi)"] [data "Enknk,ARGS:params[qry_query]"]
Downloaded the nightly build version of privacy from the list above and line 687 reads:

if ( ( ( $ueConfig == 1 ) && $params->get( 'privacy_options_users', 1 ) ) ) {
$cache[] = moscomprofilerHTML::makeOption( '1', CBTxt::T( 'Users' ) );
}

Please Log in or Create an account to join the conversation.

  • krileon
  • krileon
  • ONLINE
  • Posts: 48472
  • Thanks: 8280
  • Karma: 1443
9 years 2 months ago #269844 by krileon
Replied by krileon on topic CB Query Field 403 error

I set mod_security to Detect Mode and the field was saved successfully; I have returned the setting to Active. I presume that this is due to the inserting of an SQL query into the data table; "Warning. detected SQLi using libinjection with fingerprint 'Enknk'"; Possible SQL injection attack (detectSQLi)"] [data "Enknk,ARGS:params[qry_query]"]

Yeah, it thinks there's an SQL injection going on due to SQL query being stored in SQL.

Downloaded the nightly build version of privacy from the list above and line 687 reads:

That's correct. Is your CB Privacy issue gone with latest nightly?


Kyle (Krileon)
Community Builder Team Member
Before posting on forums: Read FAQ thoroughly + Read our Documentation + Search the forums
CB links: Documentation - Localization - CB Quickstart - CB Paid Subscriptions - Add-Ons - Forge
--
If you are a Professional, Developer, or CB Paid Subscriptions subscriber and have a support issue please always post in your respective support forums for best results!
--
If I've missed your support post with a delay of 3 days or greater and are a Professional, Developer, or CBSubs subscriber please send me a private message with your thread and will reply when possible!
--
Please note I am available Monday - Friday from 8:00 AM CST to 4:00 PM CST. I am away on weekends (Saturday and Sunday) and if I've missed your post on or before a weekend after business hours please wait for the next following business day (Monday) and will get to your issue as soon as possible, thank you.
--
My role here is to provide guidance and assistance. I cannot provide custom code for each custom requirement. Please do not inquire me about custom development.

Please Log in or Create an account to join the conversation.

9 years 2 months ago #269847 by Thelowlandpiper
Replied by Thelowlandpiper on topic CB Query Field 403 error
The error message was still displaying; however, I've abandoned the whole idea of upgrading to joomla 3; Virtuemart is driving me up the wall, and anyway without the integration with CB it isn't worth transporting all my data from VM 1.2.0b. I'll stick with Joomla 2.5 [27] and CB 1.9.1 [plus the customization i did on the CB profile css. I might just settle for a more responsive template for J2.5. Is there one that supports CB/CBSubs ?

Please Log in or Create an account to join the conversation.

Moderators: beatnantkrileon
Powered by Kunena Forum