Thread Rating:
  • 0 Vote(s) - 0 Average
  • 1
  • 2
  • 3
  • 4
  • 5
v3.3.16 Vulnerability - CVE-2020-24861
#9
(2021-09-15, 21:28:50)Felix Wrote:
Quote:I think I would need to request my host to turn Mod_Security on/off which could be a number of times a day in some cases.

These days Hosts have Mod_Security already in their CPanel for their clients to configure,
my Host has. Sometimes it is burried away under "Advanced Settings"

Another solution is to edit / update your website locally on a local server stack on your laptop
and upload the changes to your host. This will avoid edit strings being blocked by your Host,
when editing online.

Having a local copy of a website is always very recommended not to be at the mercy of a Hoster
because you never know what will happen with their future updates, restrictions and policies.

I have local copies of all my websites.
All you need is for example a Laragon stack on your laptop (windows)
and an FTP client to upload your edits and changes.

If you use WinSCP or Notepad++ they have ftp already integrated in the IDE
and your local editing will be synced as if you were editing online

F.

Good advice indeed, but..
My Host is in my experience of more than ten years with them, absolutely excellent in all respects. This after having worked with many others over the years from the worst and everything in-between. They control all aspects of server security, and I am grateful for that. So unfortunately I have no access to Mod_Security via cPanel.

Local web server:
Yes, it certainly is an option. I've used local severs for many years mainly due to the lower bandwidth days prior to the broadband era which enables us to work seamlessly remotely. Since then I have found it unnecessary - until perhaps now... I do have current backups of all accounts though.

Will this issue be resolved in the next GS version upgrade and when is it likely to be released (stable)?
Reply


Messages In This Thread
v3.3.16 Vulnerability - CVE-2020-24861 - by Brex - 2021-09-15, 19:04:48
RE: v3.3.16 Vulnerability - CVE-2020-24861 - by Brex - 2021-09-15, 22:01:12



Users browsing this thread: 2 Guest(s)