- Posts: 4
- Thank you received: 0
Guestbook 'Add Entry' not working ...
- webtrekker
- Topic Author
- Offline
- New Member
Less
More
10 years 5 months ago - 10 years 5 months ago #13773
by webtrekker
Guestbook 'Add Entry' not working ... was created by webtrekker
Hi. I've uploaded DigiOz Gueatbook to my server and followed all instructions, including setting file permissions to 777 as suggested but whenever I try to add a new entry by clicking the Submit button I am greeted with a page of gobbledygook looking something like this ...
$max))) return FALSE; return $string; } // sanitize a string in prep for passing a single argument to system() (or similar) function sanitize_system_string($string, $min='', $max='') { $pattern = '/(;|\||`|>|<|&|^|"|'."\n|\r|'".'|{|}|[|]|\)|\()/i'; // no piping, passing possible environment variables ($), // seperate commands, nested execution, file redirection, // background processing, special commands (backspace, etc.), quotes // newlines, or some other special characters $string = preg_replace($pattern, '', $string); $string = '"'.preg_replace('/\$/', '\\\$', $string).'"'; //make sure this is only interpretted as ONE argument $len = strlen($string); if((($min != '') && ($len < $min)) || (($max != '') && ($len > $max))) return FALSE; return $string; } // sanitize a string for SQL input (simple slash out quotes and slashes) function sanitize_sql_string($string, $min='', $max='') { $string = nice_addslashes($string); //gz $pattern = "/;/"; // jp $replacement = ""; $len = strlen($string); if((($min != '') && ($len < $min)) || (($max != '') && ($len > $max))) return FALSE; return preg_replace($pattern, $replacement, $string); } // sanitize a string for SQL input (simple slash out quotes and slashes) function sanitize_ldap_string($string, $min='', $max='') { $pattern = '/(\)|\(|\||&)/'; $len = strlen($string); if((($min != '') && ($len < $min)) || (($max != '') && ($len > $max))) return FALSE; return preg_replace($pattern, '', $string); } // sanitize a string for HTML (make sure nothing gets interpretted!) function sanitize_html_string($string) { $pattern[0] = '/\&/'; $pattern[1] = '//"; $pattern[3] = '/\n/'; $pattern[4] = '/"/'; $pattern[5] = "/'/"; $pattern[6] = "/%/"; $pattern[7] = '/\(/'; $pattern[8] = '/\)/'; $pattern[9] = '/\+/'; $pattern[10] = '/-/'; $replacement[0] = '&'; $replacement[1] = '<'; $replacement[2] = '>'; $replacement[3] = '
... and so on ...
Does anyone know what I am doing wrong? I'd love to get this feature working on a site I'm designing.
Thanks.
$max))) return FALSE; return $string; } // sanitize a string in prep for passing a single argument to system() (or similar) function sanitize_system_string($string, $min='', $max='') { $pattern = '/(;|\||`|>|<|&|^|"|'."\n|\r|'".'|{|}|[|]|\)|\()/i'; // no piping, passing possible environment variables ($), // seperate commands, nested execution, file redirection, // background processing, special commands (backspace, etc.), quotes // newlines, or some other special characters $string = preg_replace($pattern, '', $string); $string = '"'.preg_replace('/\$/', '\\\$', $string).'"'; //make sure this is only interpretted as ONE argument $len = strlen($string); if((($min != '') && ($len < $min)) || (($max != '') && ($len > $max))) return FALSE; return $string; } // sanitize a string for SQL input (simple slash out quotes and slashes) function sanitize_sql_string($string, $min='', $max='') { $string = nice_addslashes($string); //gz $pattern = "/;/"; // jp $replacement = ""; $len = strlen($string); if((($min != '') && ($len < $min)) || (($max != '') && ($len > $max))) return FALSE; return preg_replace($pattern, $replacement, $string); } // sanitize a string for SQL input (simple slash out quotes and slashes) function sanitize_ldap_string($string, $min='', $max='') { $pattern = '/(\)|\(|\||&)/'; $len = strlen($string); if((($min != '') && ($len < $min)) || (($max != '') && ($len > $max))) return FALSE; return preg_replace($pattern, '', $string); } // sanitize a string for HTML (make sure nothing gets interpretted!) function sanitize_html_string($string) { $pattern[0] = '/\&/'; $pattern[1] = '//"; $pattern[3] = '/\n/'; $pattern[4] = '/"/'; $pattern[5] = "/'/"; $pattern[6] = "/%/"; $pattern[7] = '/\(/'; $pattern[8] = '/\)/'; $pattern[9] = '/\+/'; $pattern[10] = '/-/'; $replacement[0] = '&'; $replacement[1] = '<'; $replacement[2] = '>'; $replacement[3] = '
... and so on ...
Does anyone know what I am doing wrong? I'd love to get this feature working on a site I'm designing.
Thanks.
Last edit: 10 years 5 months ago by Pete.
Please Log in or Create an account to join the conversation.
10 years 5 months ago #13780
by Pete
DigiOz Webmaster
www.digioz.com
Replied by Pete on topic Guestbook 'Add Entry' not working ...
Hello,
Let's start with some basic questions:
1. Have you made any customization to the look of the guestbook, and if so what files have you changed?
2. What version of the Guestbook are you running?
3. What version of PHP are you running?
4. Have you made any fields optional, and if so which ones?
5. Please post you're config.php file content (with the exception of the admin username and password)
Thanks
Pete
Let's start with some basic questions:
1. Have you made any customization to the look of the guestbook, and if so what files have you changed?
2. What version of the Guestbook are you running?
3. What version of PHP are you running?
4. Have you made any fields optional, and if so which ones?
5. Please post you're config.php file content (with the exception of the admin username and password)
Thanks
Pete
DigiOz Webmaster
www.digioz.com
The following user(s) said Thank You: webtrekker
Please Log in or Create an account to join the conversation.
- webtrekker
- Topic Author
- Offline
- New Member
Less
More
- Posts: 4
- Thank you received: 0
10 years 5 months ago #13781
by webtrekker
Replied by webtrekker on topic Guestbook 'Add Entry' not working ...
Hi Pete. Thanks for the quick response.
1. I have made no customizations. I am running the guestbook 'out of the box' so to speak.
2. I am running version 2.0 of Guestbook.
3. My PHP version is 5.5.9
4. I have not made any fields optional.
5. Here's my config.php file ...
1. I have made no customizations. I am running the guestbook 'out of the box' so to speak.
2. I am running version 2.0 of Guestbook.
3. My PHP version is 5.5.9
4. I have not made any fields optional.
5. Here's my config.php file ...
Code:
<?php
if(!defined('IN_GB')) {
die('Direct access not permitted');
}
// Version of this Guestbook ---------------------------------------------------------
$gb_version = "2.0.0";
// Theme directory -------------------------------------------------------------------
$theme = "default";
// Variables for making a field optional in form -------------------------------------
$email_optional = 0; // Set "1" for optional email, "0" to make it required
$name_optional = 0; // Set "1" for optional name, "0" to make it required
$message_optional = 0; // Set "1" for optional message, "0" for required
// Variables for notifying administrator when a new message is posted ----------------
$notify_admin = 0; // Set "1" to notify administrator through email
// when a new guestbook entry is written.
// Warning: To use this feature you will have to have
// your "SMTP" and "smtp_port" setting in php.ini set.
// Enter the admin notification email subject bellow
$notify_subject = "You have a new entry in your DigiOz Guestbook";
// Enter administrative email to receive notification
$notify_admin_email = "webmaster@yourdomain.com";
// Body of the notification message
$notify_message = "A new entry has been submitted to your DigiOz Guestbook.";
// Guestbook Configuration Variables ------------------------------------------------
$total_records_per_page = 10; // determines how many messages show per page in list
// Variable for choosing language file name -----------------------------------------
$default_language = "language.php";
// Image Verification Feature -------------------------------------------------------
$image_verify = 0; // Set to 1 for simple, or 2 for Recaptcha.
// If you select 2, you have to set the Recaptcha
// public and private keys below as well
// Do Image Verification to prevent spam post
// This option requires your PHP to have been
// compiled with GD 2.0.x or higher library so
// it may not work with all server environments.
// However, image verification is the MOST effective
// way of getting rid of spam, so we highly recommend it.
$recaptcha_public_key = ""; // Recaptcha Public Key obtained from google.com/recaptcha
$recaptcha_private_key = ""; // Recaptcha Private Key obtained from google.com/recaptcha
// Admin Interface Username ---------------------------------------------------------
$_Username = "admin";
$_Password = "admin";
// Flood protection setting ---------------------------------------------------------
$gbflood = 0; // Set "1" to prevent flooding, "0" to disable it
$referersKey = 0; // Set "1" to check to see where submitted guestbook
// messages are coming from or "0" to disable it
$referers = array (
'yourdomain.com', // Your domain name without WWW
'www.yourdomain.com', // Your domain name with WWW
'111.222.333.444'); // IP Address of your site
$gbIPLogKey = 1; // Set "1" to log IP of Visitor for each post "0" to disable
$banIPKey = 0; // Set "1" to block posting of banned IP or "0" to disable
// ---------------------------------------------------------------------------------
// Bellow you can list known IP addresses you would like to block. -----------------
// We have given you a list of known spammers bellow. Feel free --------------------
// to either use our list or delete our list and create your own -------------------
// based on the IP logs of the guestbook. For updates to our list ------------------
// of known spammers please visit www.digioz.com or email our ----------------------
// tech support team. --------------------------------------------------------------
// ---------------------------------------------------------------------------------
$banned_ip = array();
$banned_ip[] = '195.225.176.57';
$banned_ip[] = '212.62.19.185';
$banned_ip[] = '202.3.130.20';
$banned_ip[] = '222.104.7.196';
$banned_ip[] = '61.33.229.80';
$banned_ip[] = '63.138.25.195';
$banned_ip[] = '205.208.226.61';
$banned_ip[] = '213.46.224.101';
$banned_ip[] = '167.193.194.101';
$banned_ip[] = '207.63.100.162';
$banned_ip[] = '210.177.248.130';
$banned_ip[] = '195.225.176.57';
$banned_ip[] = '80.58.50.107';
$banned_ip[] = '80.58.33.170';
$banned_ip[] = '80.58.11.42';
$banned_ip[] = '207.63.100.163';
$banned_ip[] = '211.233.9.201';
$banned_ip[] = '82.236.86.223';
$banned_ip[] = '63.98.230.188';
$banned_ip[] = '195.228.156.106';
$banned_ip[] = '200.9.37.220';
$banned_ip[] = '200.57.91.108';
$banned_ip[] = '69.212.48.169';
$banned_ip[] = '61.0.62.4';
$banned_ip[] = '12.160.225.230';
$banned_ip[] = '219.93.174.101';
$banned_ip[] = '203.162.27.199';
$banned_ip[] = '66.94.81.202';
$banned_ip[] = '210.113.222.227';
$banned_ip[] = '59.23.9.141';
$banned_ip[] = '58.227.196.150';
$banned_ip[] = '59.23.9.141';
$banned_ip[] = '218.26.207.66';
$banned_ip[] = '84.254.189.37';
$banned_ip[] = '203.162.27.195';
$banned_ip[] = '202.101.173.69';
$banned_ip[] = '203.145.159.45';
$banned_ip[] = '63.138.25.195';
$banned_ip[] = '207.63.100.162';
$banned_ip[] = '80.56.174.130';
$banned_ip[] = '211.53.64.127';
$banned_ip[] = '200.2.128.2';
$banned_ip[] = '204.113.91.19';
// Bad word filter for guestbook -----------------------------------------------------
$gbBadWordsKey = 0; // Set "1" to filter bad words, "0" to not filter
$gbBadWords = array(
"ass",
"bitch",
"clit",
"cock",
"c0ck",
"cum",
"cunt",
"fucking",
"fuck",
"fuking",
"fuk");
// Spam Detection -------------------------------------------------------------------
$gbSpamKey = 1; // Set "1" to Block Spam based on Keyword entered
$gbSpam = array (
"cheap",
"phentermine",
"splinder",
"hydrocodone",
"vicodin",
"vicodin",
"pharmacy",
"prescription",
"buy",
"drug",
"pills",
"soma");
// End of Configuration File --------------------------------------------------------
?>
Please Log in or Create an account to join the conversation.
10 years 5 months ago - 10 years 5 months ago #13782
by Pete
DigiOz Webmaster
www.digioz.com
Replied by Pete on topic Guestbook 'Add Entry' not working ...
Please email me your FTP information to support@digioz.com and I will take a look to see why it is not working.
DigiOz Webmaster
www.digioz.com
Last edit: 10 years 5 months ago by Pete.
The following user(s) said Thank You: webtrekker
Please Log in or Create an account to join the conversation.
- webtrekker
- Topic Author
- Offline
- New Member
Less
More
- Posts: 4
- Thank you received: 0
10 years 5 months ago #13784
by webtrekker
Replied by webtrekker on topic Guestbook 'Add Entry' not working ...
Email with FTP settings sent.
Thanks.
Thanks.
Please Log in or Create an account to join the conversation.
10 years 5 months ago #13785
by Pete
DigiOz Webmaster
www.digioz.com
Replied by Pete on topic Guestbook 'Add Entry' not working ...
It looks like your Server does not support the shorthand PHP tag "<?" as opposed to "<?php" to open a PHP Code Block. This shorthand notation was used in the file "includes/sanitize" which was written by the "Free Software Foundation". I changed it to use the standard "<?php" notation and everything else is now working.
I left the previous version of the guestbook in that folder as "_guestbook" for your reference. Feel free to delete it if you no longer need it.
Thanks,
Pete
I left the previous version of the guestbook in that folder as "_guestbook" for your reference. Feel free to delete it if you no longer need it.
Thanks,
Pete
DigiOz Webmaster
www.digioz.com
The following user(s) said Thank You: webtrekker
Please Log in or Create an account to join the conversation.
Time to create page: 0.125 seconds