7
Quote:
A-dog wrote:
I realize there is a fix for the latest version.. but I'm not upgrading to RC2.0 because I'm using a very modified custom theme with 1.3.10
To answer your question, if you are still using an older version, then yes it is still affected untill you apply a fix. This is the reason for fixes and upgrades.
I'm sorry you don't feel that you can upgrade because of your unique situation with your current version, however it is a choice that you have made and a resposibiliy only you can control. Not only is your site at risk, your host is at risk as well. Although your friend is a great help in pointing this out to you, other more dubious characters
will exploit this vulnerability.
As a courtesy, I should also mention that if your host provider finds that you are running scripts that are a potential threat to their own internal server security, they may approach you on this matter and ask that you do something about it, or worse, temporarily close your account until the problem has been rectified.
Don't get me wrong, I'm not harping at you, just pointing out other things that need to be taken into consideration. I empathise with your situation in wishing for an upgrade script to make the changes you need. Hopefully you will be able to find a resolution to your particular set of circumstances.
Cheers