Book Mark

Ike.ninja

Linux Fun
  • Home
  • How to
  • Reference Links
  • Categories
    • Releases
    • Plesk
    • Community
    • CMS
    • security
    • MYSQL
    • cPanel
  • Tools
    • IP Checker
    • Byte Converter
RSS

[20140903] – Core – Remote File Inclusion

Sep30
by Ike on September 30, 2014 at 7:00 pm
Posted In: CMS, Joomla, security, Security Center
  • Project: Joomla!
  • SubProject: CMS
  • Severity: Moderate
  • Versions: 2.5.4 through 2.5.25, 3.2.5 and earlier 3.x versions, 3.3.0 through 3.3.4
  • Exploit type: Remote File Inclusion
  • Reported Date: 2014-September-24
  • Fixed Date: 2014-September-30
  • CVE Number: CVE-2014-7228

Description

Inadequate checking allowed the potential for remote files to be executed.

Affected Installs

Joomla! CMS versions 2.5.4 through 2.5.25, 3.2.5 and earlier 3.x versions, 3.3.0 through 3.3.4

Solution

Upgrade to version 2.5.26, 3.2.6, or 3.3.5

Additional Details

Please refer to AkeebaBackup.com for additional details.

Contact

The JSST at the Joomla! Security Center.

Reported By: Johannes Dahse

└ Tags: 3.4, Additional Details, Affected Installs, Fixed Date, Security Center
 Comment 

Oracle Security Alert for CVE-2014-7169 – 26 September 2014

Sep26
by Ike on September 26, 2014 at 7:30 pm
Posted In: Community, MYSQL, Releases
 Comment 

September 2014 Web Server Survey

Sep24
by Ike on September 24, 2014 at 10:00 am
Posted In: Web Server Survey

In the September 2014 survey we received responses from 1,022,954,603
sites — nearly 31 million more than last month.

More than a billion websites

This is the first time the survey has exceeded a billion websites,
a milestone achievement that was unimaginable two decades ago.

Netcraft’s first ever survey was carried out over 19 years ago in August 1995. That survey
found only 18,957 sites, although the first significant milestone of one million sites was reached
in less than two years, by April 1997.

Fuelled by the dot-com bubble between 1997 and 2000, the survey reached nearly 10 million sites
by the start of 2000. The active sites metric was added to our survey shortly afterwards, immediately showing that a significant proportion of websites were automatically generated, displaying identical tag structures, and used for activities such as holding pages, typo-squatting advertising providers, speculative domain registrants, and search-engine optimisation companies.

Rapid hostname growth has continued ever since, with the number of active sites increasing at a far gentler rate. Just under half of the hostnames in our June 2000 survey were active sites, whereas today, less than one in five are active — 178 million active sites in total.

Microsoft, Apache, and nginx

Microsoft and Apache currently take the lion’s share of the web server market (just over 71% combined), while Microsoft edged into the lead for the first time in July 2014. Nginx has been steadily gaining share over the last 7 years, and is now used to serve just over 14% of all hostnames.

The view by number of active sites is very different, however. While Microsoft has seen a rapid growth in their hostname market share of around 20 percentage points since September 2011, there has been almost no change in their share of the active sites in this time. Nginx overtook Microsoft in terms of active sites in 2012, and today has a market share of 14.5% – more than 2 points ahead of Microsoft, whose web server software is used by only 11.9% of active sites. However, Apache truly dominates this market, with more than half of all active sites choosing to use Apache software.

Recently nginx has been seeing even greater gains in terms of web facing computers, doubling their market share in the last 2 years to just over 10% this month. Apache and Microsoft are continuing to experience increases in their number of web facing computers, however the growth is often far smaller than that of nginx. This month they gained just 323 and 414 computers respectively, compared to an increase of over 17k for nginx.

New top level domains

Dozens of new TLDs were added to the Root Zone during this month’s survey, including
.deals, .healthcare, .realtor,
.auction, .yandex, .city
and .lgbt. Recent additions which have now started to experience growth in the survey include .media, .services, .reisen, .pictures, .exchange and .toys.
Each of these TLDs had only
two or three sites last month, but all are now in their thousands.

The .xyz domain, which we mentioned last month, has outpaced all of the other new gTLDs after a Network Solutions promotion offering a free matching .xyz domain with each .com domain purchased. This month an additional 177,000 hostnames were found under this TLD, bringing the total number of .xyz sites up by 78% to 403,000.
Even faster growth was seen among the .中国 (xn--fiqs8s) internationalised domain name for China, which grew by 181% to a total of 73,000 sites.

Total number of websites

Web server market share

Developer August 2014 Percent September 2014 Percent Change
Microsoft 367,805,416 37.07% 371,406,909 36.31% -0.76
Apache 346,702,990 34.94% 355,925,985 34.79% -0.15
nginx 135,037,738 13.61% 144,717,670 14.15% 0.54
Google 20,076,890 2.02% 19,499,154 1.91% -0.12

Web server market share for active sites

Developer August 2014 Percent September 2014 Percent Change
Apache 91,306,006 51.13% 90,229,153 50.74% -0.39
nginx 25,839,581 14.47% 25,865,132 14.54% 0.08
Microsoft 21,028,041 11.78% 21,122,925 11.88% 0.10
Google 14,059,484 7.87% 13,737,537 7.73% -0.15

For more information see Active Sites

Web server market share for top million busiest sites

Developer August 2014 Percent September 2014 Percent Change
Apache 511,890 51.19% 504,816 50.48% -0.71
nginx 195,974 19.60% 200,526 20.05% 0.46
Microsoft 124,702 12.47% 125,513 12.55% 0.08
Google 27,239 2.72% 26,740 2.67% -0.05
Web server market share for computers

Developer August 2014 Percent September 2014 Percent Change
Apache 2,338,927 47.83% 2,339,250 47.65% -0.18
Microsoft 1,515,674 31.00% 1,516,088 30.88% -0.11
nginx 478,793 9.79% 496,417 10.11% 0.32
└ Tags: Apache, China, Root Zone, TLD, Web Server Survey
 Comment 

[20140902] – Core – Unauthorised Logins

Sep23
by Ike on September 23, 2014 at 7:00 pm
Posted In: CMS, Joomla, security, Security Center
  • Project: Joomla!
  • SubProject: CMS
  • Severity: Moderate
  • Versions: 2.5.24 and earlier 2.5.x versions, 3.2.4 and earlier 3.x versions, 3.3.0 through 3.3.3
  • Exploit type: Unauthorised Logins
  • Reported Date: 2014-September-09
  • Fixed Date: 2014-September-23
  • CVE Number: CVE-2014-6632

Description

Inadequate checking allowed unauthorised logins via LDAP authentication.

Affected Installs

Joomla! CMS versions 2.5.24 and earlier 2.5.x versions, 3.2.4 and earlier 3.x versions, 3.3.0 through 3.3.3

Solution

Upgrade to version 2.5.25, 3.2.5, or 3.3.4

Contact

The JSST at the Joomla! Security Center.

Reported By: Matthew Daley

└ Tags: Affected Installs, Joomla Security Center, LDAP, Security Center, Unauthorised Logins
 Comment 

[20140901] – Core – XSS Vulnerability

Sep23
by Ike on September 23, 2014 at 7:00 pm
Posted In: CMS, Joomla, security, Security Center
  • Project: Joomla!
  • SubProject: CMS
  • Severity: Moderate
  • Versions: 3.2.0 through 3.2.4, 3.3.0 through 3.3.3
  • Exploit type: XSS Vulnerability
  • Reported Date: 2014-August-27
  • Fixed Date: 2014-September-23
  • CVE Number: CVE-2014-6631

Description

Inadequate escaping leads to XSS vulnerability in com_media.

Affected Installs

Joomla! CMS versions 3.2.0 through 3.2.4 and 3.3.0 through 3.3.3

Solution

Upgrade to version 3.2.5 or 3.3.4

Contact

The JSST at the Joomla! Security Center.

Reported By: Dingjie (Daniel) Yang

└ Tags: Affected Installs, Fixed Date, Joomla Security Center, Security Center, XSS
 Comment 
  • Page 2,363 of 2,975
  • « First
  • «
  • 2,361
  • 2,362
  • 2,363
  • 2,364
  • 2,365
  • »
  • Last »

What’s New?

  • Fedora 41: Apptainer CVE-2025-65105 Security Fix Advisory
  • Fedora 43: Apptainer 1.4.5 Important Fix CVE-2025-65105
  • Ubuntu 18.04: USN-7907-5 Linux Kernel Important Security Flaws
  • Debian: Chromium Important DSA-6080-1 Code Exec DoS Issues
  • Fedora 42: SingularityCE Important Upgrade 4.3.5 – FEDORA-2025-54d78b9fed
  • Fedora 43: perl-Alien-Brotli Critical Security DoS Fix 2025-d93200cf16
  • Fedora 42: Wireshark 4.6.1 Critical Issue Advisory – FEDORA-2025-f810869906
  • Fedora 42: yarnpkg Command Injection Fix CVE-2025-64756 Advisory
  • Ubuntu 25.10: Linux Kernel Critical Flaws Security Patch USN-7906-3
  • Ubuntu 22.04: USN-7889-6 Linux Kernel Important Security Patch
  • Ubuntu 22.04 LTS: Linux Kernel Critical Security Issues USN-7928-3
  • Ubuntu 22.04: 7928-2 Linux Kernel FIPS Security Updates
  • Ubuntu 22.04 LTS: USN-7928-1 Linux Kernel Critical Security Issues
  • Debian: Important DoS Vulnerabilities in FFmpeg DSA-6080-1 Advisory
  • Ubuntu 20.04 LTS: USN-7922-1 Linux Kernel Important Security Issues
  • Ubuntu 24.04 LTS: Kernel Important Security Fixes USN-7921-1 CVE-2025-39946
  • Debian: firefox-esr Critical Privilege Escalation DSA-6078-1 CVE-2025-14321
  • 2026 Global Partner Program Announcement
  • Debian: pdns-recursor Critical Denial of Service Vulnerability DSA-6077-1
  • Debian: libpng1.6 Critical Info Leak & DoS Vulnerabilities DSA-6076-1
  • Fedora 43: python3-docs Update 2025-e235793f10 – Maintenance Release
  • Fedora 43: python3.14 Critical Update Addresses Quadratic Complexity Bug
  • Debian: WordPress Important XSS and Info Disclosure DSA-6075-1
  • Ubuntu 22.04 LTS: fontTools Important Path Traversal Risk CVE-2025-66034
  • Debian: webkit2gtk Critical Info Exfiltration DSA-6074-1 CVE-2025-13947

Search

Translator

Tags

Business and industry code Community cPanel CVE Debian Debian Linux Distribution - Security Advisories Development Events Fedora Fedora Linux Distribution - Security Advisories General Hosting Important Advisory Linux Moderate Advisory Month in WordPress news Parallels Plesk Parallels Plesk Panel Performance PHP Plesk news and announcements Plesk Panel Podcast ProdDevSec Product and technology Products Project Release News Red Hat Red Hat Linux Distribution - Security Advisories Releases security Security Centre sensitive site Ubuntu Ubuntu Linux Distribution - Security Advisories update updates Various vulnerability Web Server Survey Wordpress wp-briefing

Posts

Helpful Links

  • Liquidweb.com
  • MYSQL Dev Documentation
  • Plugins
  • Source forge SED command
  • Themes
  • WordPress Documentation
  • You Tube
December 2025
M T W T F S S
« Nov    
1234567
891011121314
15161718192021
22232425262728
293031  
  • Google
  • Yahoo
  • Liquid Web
  • Storm
  • YouTube

©1999-2025 Ike.ninja | Powered by WordPress with Easel | Subscribe: RSS | Back to Top ↑

50 queries. 8.5 mb Memory usage. 0.299 seconds.