Joomla 1.5.26 secure with provider-side write protection?

Discussion regarding Joomla! 1.5 security issues.
Joomla! Vulnerable Extensions: http://feeds.joomla.org/JoomlaSecurityV ... Extensions

Moderator: General Support Moderators

Forum rules
Forum Rules
Absolute Beginner's Guide to Joomla! <-- please read before posting, this means YOU.
Security Checklist
Forum Post Assistant - If you are serious about wanting help, you will use this tool to help you post.
Locked
Andy25
Joomla! Fledgling
Joomla! Fledgling
Posts: 2
Joined: Sun Nov 10, 2013 10:52 am

Joomla 1.5.26 secure with provider-side write protection?

Post by Andy25 » Sun Nov 10, 2013 11:10 am

Dear all,
I read claims on the web that Joomla 1.5.26 would not be secure anymore (http://www.itoctopus.com/is-joomla-1-5-26-still-secure).

My webspace provider (Strato) allows me to disable the possiblity for scripts to upload or change files on the webspace. Since I don't need that feature for my website, I was wondering whether Joomla 1.5.26 can still be seen as being secure if scripts are not allowed to upload or change files (I assume that this server-side setting cannot be changed by scripts running on my website).

Thank you very much in advance!

User avatar
Per Yngve Berg
Joomla! Master
Joomla! Master
Posts: 31084
Joined: Mon Oct 27, 2008 9:27 pm
Location: Romerike, Norway

Re: Joomla 1.5.26 secure with provider-side write protection

Post by Per Yngve Berg » Sun Nov 10, 2013 2:23 pm

1. Delete the Flash Uploader (media/system/swf/uploader.swf)

2. Install the post 1.5.26 security patch. It contains two files for media manager.
http://joomlacode.org/gf/project/joomla ... m_id=31626

Andy25
Joomla! Fledgling
Joomla! Fledgling
Posts: 2
Joined: Sun Nov 10, 2013 10:52 am

Re: Joomla 1.5.26 secure with provider-side write protection

Post by Andy25 » Sun Nov 17, 2013 10:04 pm

Great! Thank you very much for your help!


Locked

Return to “Security in Joomla! 1.5”