Thread Rating:
  • 0 Vote(s) - 0 Average
  • 1
  • 2
  • 3
  • 4
  • 5
v3.3.16 Vulnerability - CVE-2020-24861
#11
(2021-09-15, 23:13:42)Felix Wrote: If your host has no Mod_Security config in your CPanel, then no matter your high words about them,
you host is providing an outdated CPanel. And let there be no mistake about Hosting providers,
for any Host a client is simply collateral damage when problems can not be solved.
It is up to you to find a Host with a complete CPanel (including mod_security)

Quote:Will this issue be resolved in the next GS version upgrade and when is it likely to be released (stable)?

Somebody has to dive in the 3.3.16 core and find the php that is responsible for stripping out
not allowed characters in a string. Can't promise if I can find the time for it soon.

Yes, the Host is excellent. They have already worked with me to override Mod_Security as and when I require. However I would prefer if this wasn't needed at all, and so the reason for my enquiry here. Many thanks to all who have helped.
Reply


Messages In This Thread
v3.3.16 Vulnerability - CVE-2020-24861 - by Brex - 2021-09-15, 19:04:48
RE: v3.3.16 Vulnerability - CVE-2020-24861 - by Brex - 2021-09-16, 05:38:10



Users browsing this thread: 1 Guest(s)