Softaculous


Topic : cPanel Security Token feature bug


Posted By: serveo on February 20, 2010, 2:31 pm
cPanel is now more secure and added a  Security Token feature to WHM and cPanel. Because of this url's now look like server.tld:2087/cpsessXXXXXXXXX/ where the XXXXXX are numbers.

Quote
Request Info:

    Requested page: /cgi/softaculous/index.php
   

    Error message: security token missing

Form Data:
   
       
            Key
            Value


Because of this new feature you need sometimes to relogin when going from  Softaculous Auto to cPanel (back to controlpanel button) or click in the WHM menu on Softaculous - Instant Installs.

More information on new security in cPanel 11.25: http://www.cpanel.net/2009/10/cpanel-security-advisory-cve-2008-2043.html


Edited by serveo : February 20, 2010, 2:35 pm

-----------------------
Hosting fan

Posted By: alons on February 21, 2010, 6:15 pm | Post: 1
Hi,

This will be taken care of in 2.7
Its due for release very soon.

-----------------------
For immediate support please email us at our Support email address. PMs sent to any Softaculous Team member or posting in the forums is not the official way to get support.

Virtualizor - The Next Generation VPS Panel
Webuzo - It is Softaculous Standalone for Enterprises, SMB, Developers. Deploy it on Dedicated Servers, VPS, Virtual Appliances or the Cloud
Pinguzo - Server and Domain Monitoring tool
PopularFX - Marketplace of WordPress, Drupal, Joomla, Bootstrap themes
Remote Installer - Use Softaculous over FTP/FTPS/SFTP

Posted By: serveo on February 21, 2010, 8:46 pm | Post: 2
I made the following temporary change to hf_theme.php

Change:
<a href="'.$softpanel->theme['panel_url'].'">
To:
<a href="../index.html">


-----------------------
Hosting fan

Posted By: alons on February 27, 2010, 2:49 pm | Post: 3
Fixed in 2.7
You can use the following:
<a href="../">

-----------------------
For immediate support please email us at our Support email address. PMs sent to any Softaculous Team member or posting in the forums is not the official way to get support.

Virtualizor - The Next Generation VPS Panel
Webuzo - It is Softaculous Standalone for Enterprises, SMB, Developers. Deploy it on Dedicated Servers, VPS, Virtual Appliances or the Cloud
Pinguzo - Server and Domain Monitoring tool
PopularFX - Marketplace of WordPress, Drupal, Joomla, Bootstrap themes
Remote Installer - Use Softaculous over FTP/FTPS/SFTP

Powered By AEF 1.0.8 © 2007-2008 Electron Inc.