CVE-2020-0601

CVE-2020-0601 – Windows CryptoAPI Spoofing Vulnerability

CVE-2020-0601 – Windows CryptoAPI Spoofing Vulnerability A spoofing vulnerability exists in the way Windows CryptoAPI (Crypt32.dll) validates Elliptic Curve Cryptography (ECC) certificates. An attacker could exploit the vulnerability by using a spoofed code-signing certificate to sign a malicious executable, making it appear the file was from a trusted, legitimate source. The user would have no …

CVE-2020-0601 – Windows CryptoAPI Spoofing Vulnerability Read More »

WHMCS 7.9

WHMCS 7.9 Now Available

WHMCS has released a new version. WHMCS 7.9 is now available for general availability. You can use their auto update option to upgrade it. What’s New in WHMCS 7.9? Usage BillingĀ – Bill your customers for what they’ve used, supporting cPanel and DirectAdmin at launch, and fully accessible to 3rd party developers PayPal CheckoutĀ – A new …

WHMCS 7.9 Now Available Read More »

WHMCS V7.4.2 maintenance update

WHMCS has released maintenance update for WHMCS V7.4 version. This maintenance release includes updates, bug fixes and usability improvements. Following is the release note for WHMCS V7.4.2: Updater Enhancements – New functionality has been added to the Automatic Update utility that will validate the version of ionCube Loader installed prior to allowing an update to …

WHMCS V7.4.2 maintenance update Read More »

WordPress 4.7.3 Security and Maintenance Release

WordPress 4.7.3 is now available. This is a security release for all previous versions and it is strongly encouraged you to update your sites immediately. All previous WordPress versions contain critical security issues. Upgrading to latest version is recommended. WordPress versions 4.7.2 and earlier are affected by six security issues: Cross-site scripting (XSS) via media …

WordPress 4.7.3 Security and Maintenance Release Read More »

Critical SQL Injection Vulnerability Found in NextGEN Gallery

NextGEN Gallery is one f widely used WordPress plugins. As per the statastics available in WordPress plugin directory, this plugin was downloaded more than 1+ million times. That means, this plugin should be used on large number of WordPress installation. Researcher found a critical SQL injection vulnerability in NextGEN Gallery plugin. This vulnerability allows an …

Critical SQL Injection Vulnerability Found in NextGEN Gallery Read More »

CloudLinux HardenedPHP updated

CloudLinux is widely used operating system by web hosts. It provides better server security as well as server stability. CloudLinux also provides multiple PHP version selection. This allows end users to select appropriate PHP version for their accounts. They are also providing security updates for PHP versions which were discontinued by PHP community. Recently they …

CloudLinux HardenedPHP updated Read More »

WordPress 4.5.3 Maintenance and Security Release

WordPress 4.5.3 is now available. This is a security release for all previous version and it is strongly recommended to upgrade your WordPress installation to latest version. WordPress versions 4.5.2 and earlier are affected by several security issues: redirect bypass in the customizer, two different XSS problems via attachment names, revision history information disclosure, oEmbed …

WordPress 4.5.3 Maintenance and Security Release Read More »

CloudFlare cPanel plugin Vulnerability

CloudFlare protects and accelerates website using their CDN networks. Once you enable CloudFlare for your website, all your traffic is routed to their global networks. CloudFlare can be integrated with cPanel and they also provide cPanel plugin. A critical symlink attack vulnerability was detected in CloudFlare cPanel plugin version 5.3.2. This vulnerability may exist in …

CloudFlare cPanel plugin Vulnerability Read More »

WHMCS Kayako Loginshare Security Patch

WHMCS is the leading web hosting automation platform. Handling signups, provisioning, billing and support. They also provide loginshare module to integrate third party Helpdesk like Kayako. Recently they released a security patch for Kayako Loginshare module and it is highly recommended to apply this patch. Only Kayako loginshare users need to apply this patch. This …

WHMCS Kayako Loginshare Security Patch Read More »

Pingdom free plan change

Pingdom provides monitoring service for websites. As of now they are offering free (limited features) and paid monitoring service. On January 28, 2016, they will discontinue their existing free plan. They will continue offering free monitoring but it will have very limited features. The following features will be removed from their free plan: Public Status …

Pingdom free plan change Read More »