security

  1. A

    Security Token / x3 Theme

    I have a script that builds sites using a lot of automation. The issue that I have is that WHM recently updated to v 54, which removed x3 theme, and I think Security Token configuration. Is there a way to get x3 theme back? What changes to Security Tokens were made with v 54? Is there a way to...
  2. B

    The security token is missing from your request.

    "The security token is missing from your request." I get this message every time I type in my domain name and try to access my new website. I have searched all over the web for the solution and nothing has worked thus far. Any ideas? Thanks.
  3. postcd

    'openssl', version '1.0.1e', is out of date, and possibly a security risk.

    Hello, i have CentOS 6.7 and cpanel on it. from rkhunter i got this warning: Warning: Application 'openssl', version '1.0.1e', is out of date, and possibly a security risk. # openssl version OpenSSL 1.0.1e-fips 11 Feb 2013 WHM 11.52.0 (build 22) How should i safely fix it while not...
  4. postcd

    shell_exec() has been disabled for security reasons in /usr/local/cpanel/whostmgr/.../logger.php

    Hello, in root folder on WHM server i have "error_log" file which contains many log lines from today and many days before: PHP Warning: shell_exec() has been disabled for security reasons in /usr/local/cpanel/whostmgr/docroot/themes/x/xtra/functions/load/logger.php on line 76 Is it problem...
  5. R

    Mod Security audit_log

    Well, I saved moved the file to a backup, just to be safe. But I think there is something else going on. When I look at /usr/local/apache/logs/modsec_audit.log on this server it's empty. When I open that file on other servers where I am not getting this error it's full of directives/code.
  6. E

    How to Avoid Software Security Notice?

    I happened to install a Wordpress blog through Cpanel. However as the version updates did not happen for a few days after release, I manually upgraded the software by replacing the needed files. Now, even though my software version is updated, Cpanel keeps sending me these notices because we...
  7. Crimpshrine

    Having trouble running Java applet on SSH (Java security issue)

    Hello, I am new to this forum and this was the first time I was going to use SSH on cPanel. When I tried loading SSH on cPanel, I got an error from Java telling me that even though the domain name (my cPanel domain name) is listed on my exception list, "the application refers to resources on...
  8. W

    Somewhat a security issue

    Hi guys. Don't know how to describe this, but recently we saw some flaws on one our the sites the we have. So basically what's happened is that when you go to a link on the site, it shows up the page. But then when you delete part of the link and hit enter again, it shows up the index directory...
  9. I

    security policy error after password age change password (root)

    I have password expiration enforced after every 90 days and I got this message in cPanel's error_log after I changed my password: [2015-03-06 09:18:52 +0800] warn [Fileman::statfiles] Encountered error in Fileman::statfiles: The file “Website.zip” is not available. securitypolicy: Called...
  10. G

    The security token is missing from your request.

    Hi, I was given help to set one up. I've done everything according to the directions I followed on wix.com. I then accessed the webhostingpad. I've done the redirect and the final step - go back. When I try to log into the site I get thrown back to CPanel Accellerated 2 with the following...
  11. T

    [Case 180057] Enabling PasswordAge in the security policy can cause a 302 redirect loop

    FYI, If password change is disabled in Feature manager, turning on Main >> Security Center >> Configure Security Policies >> Security Policy Items >> Password Age causes following message and 302 redirect loop at cPanel login. (Maybe there should be a note in Security Policy Items UI about...