• If you are still using CentOS 7.9, it's time to convert to Alma 8 with the free centos2alma tool by Plesk or Plesk Migrator. Please let us know your experiences or concerns in this thread:
    CentOS2Alma discussion

AWStats6.0 in plesk 7.03 and 7.5

F

flyby

Guest
Can I upgrade Awstats my self?

#######################
Warning, a security hole was recently found in AWStats versions from 5.0 to 6.3 (Partially fixed in 6.3) when AWStats is used as a CGI: A remote user can execute arbitrary commands on your server using permissions of your web server user (in most cases user "nobody").
If you use AWStats with a more recent version or if AWStats is not available as a CGI, you are safe. If not, it is highly recommanded to upgrade to 6.4 version that fix all known security holes.
########################
 
Originally posted by flyby
Can I upgrade Awstats my self?
...
if AWStats is not available as a CGI, you are safe.
In Plesk it is not avaible as CGI
 
Plesk disable AWStats CGI scripting in Plesk 7.0 and currently in 7.5, so You may not worry about new version AWstats. Upgrade from AWstats 6.0 to 6.3 isn't very trivial.
 
7.5.2 is in testing stage now. I think the release will appear in 1-2 weeks.
 
Back
Top