Opencart 2.3.0.2 Theme Save settings 403 Forbidden

ThemeBurn SupportForumsOpenCart ThemesBurnEngineOpencart 2.3.0.2 Theme Save settings 403 Forbidden

This topic has been marked as resolved.

Hi,

In the Pavilion Control Panel, when saving theme changes, in Theme setting -> Store, the Saving Settings message is always fixed (spinning) and does not save changes, the browser console launches the 403 Forbidden message. The same happens with the Style settings.

However on the Colors screen that does not happen and saves the changes.

My system info:

Current store: dev (Default)
Current theme: Pavilion v2.1.5 /installed on 02.01.2017 01:38/
BurnEngine version: 1.1.5
OpenCart version: 2.3.0.2
HTTP Server: LiteSpeed
MySQL server version: 5.5.52-cll-lve
PHP version: 5.6.28
PHP memory limit: 256 MB
PHP Zip extension: Yes

Thanks in advance,

Toni P.

  • This reply was modified 2663 days ago by  toni_sbd.
January 2, 2017 at 4:48 am #54915

Hi,

Some server extensions like Mod Security could cause this issue. If you have it running, you can try to disable it to see, whether the problem is still presented.

We’ve tried to login on your server using the provided ftp details, but with no success.

BR,
ThemeBurn team

January 5, 2017 at 10:24 pm #55050

Hi,

Sorry, an error in ftp access root. Now it’s ok.

We hope that with the new information provided we can solve this case.

Best regards,

Toni P.

January 9, 2017 at 8:50 pm #55210

On the other hand we do not believe that it is possible to disable the Mod Security. We can not make that change.

January 9, 2017 at 9:31 pm #55211

Hi,

From our hosting have solved the problem but tell us the following:

“The protection system, which defends your account against the most known hack attempts, has identified the actions of your program as similar to those used when you want to inject malicious code and infect programs and for this reason has received the 403 error. The type of attack identified is as follows:
“Potential Cross Site Scripting Attack” ”

In future, it would be important that BurnEngine did not cause problems with mod_security because disabling server security functions is not advisable.

Best regards,

Toni P.

January 10, 2017 at 6:46 pm #55266

Can you please ask them to send which mod_security rule we hit, so we can think of a way to avoid it? The message they have posted is too general. This can be false positive too, if they set their security settings to be very restrictive.

Regards,
ThemeBurn team

January 13, 2017 at 9:39 am #55405

The technicians of my hosting only told me that I had a very restrictive security. I have not specified what they have disabled.

Now everything works properly.

Thanks for the help. Solved!!!

Regards,

Toni P.

January 19, 2017 at 1:20 pm #55600

Glad to hear everything runs fine now :)

BR,
ThemeBurn team

January 19, 2017 at 11:54 pm #55616
Viewing 8 posts - 1 through 8 (of 8 total)
  • You must be logged in to reply to this topic.