Recent content by mpfa1073

  1. M

    Multiple files uploaded, but only first file can be downloaded in list view

    After some more testing I realize that this problem is related with the download script option, if I set it to "No" then I can view all file links correctly in the List View...
  2. M

    Multiple files uploaded, but only first file can be downloaded in list view

    Joomla: 3.9.26 Fabrik: 3.9.2 (already tried to install the git source code) PHP: 7.4.13 (also tried with 7.2.11) The form I created has an upload element that receives one or more files using ajax. After form submission an e-mail is sent and files are attached correctly, the problem arises when...
  3. M

    Security Alert: Disable image preview on File Upload (AJAX)

    I kind of solved the problem protecting de upload directory with an .htaccess file with a "deny from all" clause... now the "hackers" can't access the files they upload... and regular users will receive the valid files by e-mail anyway so there is no need to make the folder public. Regards...
  4. M

    Security Alert: Disable image preview on File Upload (AJAX)

    About the use of the php plugin, the fileupload uploads the image after being selected by the user, they don't need to submit the form... so no php plugin will be run
  5. M

    Security Alert: Disable image preview on File Upload (AJAX)

    Suppose this: Site with fabrik installed and the files are uploaded to www.site.com/images/uploads Someone uploads a porn image and after getting it's name, goes to some public place and posts www.site.com/images/uploads/jfdjkfdjkfdkjlfd.jpg This creates a bad public image about www.site.com...
  6. M

    Security Alert: Disable image preview on File Upload (AJAX)

    The form is for sending consumer complaints and the attachments are the proofs of the complaints... those files should be only known to the managers after being uploaded... the problem is that anyone can send any image via upload component and get to know the file name that was saved in the...
  7. M

    Security Alert: Disable image preview on File Upload (AJAX)

    Today I received an alert from the security team that the Joomla site was hacked, the hackers tweeted an image located in the server's fabrik upload folder. After investigation, I conclude that all they did was to upload the image with the fileupload component (in using it in AJAX mode) and...
We are in need of some funding.
More details.

Thank you.

Members online

Back
Top