cPanel vulnerability – TSR-2016-0001 Announcement

  cPanel TSR-2016-0001 Announcement cPanel has released new builds for all public update tiers. These updates provide targeted changes to address security concerns with the cPanel & WHM product. These builds are currently available to all customers via the standard update system. cPanel has rated these updates as having CVSSv2 scores ranging from 2.1 to 10.0. Information on cPanel’s security […]

» Read more

CloudFlare (cPanel Plugin) v5.3.2 symlink attack vulnerability !

    Type: Symlink Attack Location: Local Impact: High Product: CloudFlare (cPanel Plugin) Website: http://www.cloudflare.com Vulnerable Version: 5.3.2 Fixed Version: 5.3.11 CVE: – R911: 0187 Date: 2016-01-15   Product Description: CloudFlare protects and accelerates any website online. Once your website is a part of the CloudFlare community, its web traffic is routed through our intelligent global network. We automatically optimize […]

» Read more

Error : Fix the WHM CSF Security Test

How to fix the WHM CSF security test errors! As a part of ensuring security, Hostripples perform a CSF security scan from WHM. We may get the following error after the scan.  “Check csf LF_SCRIPT_ALERT option WARNING This option will notify you when a large amount of email is sent from a particular script on the server, helping track down […]

» Read more

Magento web e-commerce SUPEE-5344 critical RCE (remote code execution) vulnerability .

A patch to address the flaws was released on February 9, 2015 (SUPEE-5344 available here). Store owners and administrators are urged to apply the patch immediately if they haven’t done so already. RECOMMENDED ACTIONS: 1. Check for unknown files in the web server document root directory. If you find any, you may be impacted. 2. Download and implement 2 patches […]

» Read more