A quick note: Magento just released a security patch for both Magento Enterprise and Community.
Magento Security Patch – SUPEE-5344
(Feb 10, 2015)
Although there have not been any reports of customers being impacted by this exploit, if an attacker knows what they are doing, they could remotely execute code on a Magento site (stealing customer information, credit card details, changing prices and inventory, etc).
We recommend installing this ASAP, but it’s best to do this on your test site or staging site first.
Magento also recommends checking your web server’s root document directory for unknown files.
Patches are available for:
- Magento Enterprise, versions 1.11 – 1.14
- Magento Community versions 1.6 – 1.9
If you’re running an older version of Magento, patches are not available at this point.
Let me know if you’d like us to apply this patch for your Magento site.
Thanks,
Jeff Finkelstein
Founder, Customer Paradigm
303.473.4400
Connect
Via Facebook >>
Connect
Via Google+ >>
Connect
Via Linked In >>
Connect
Via Twitter >>
We
love referrals! Our
Referral Promise >> |