isdoo Posted October 21, 2013 Share Posted October 21, 2013 Is WHMCS poorly written these days? Has the product gone downhill? Or is is just unlucky? Bit concerned as to whether other holes exist. 0 Quote Link to comment Share on other sites More sharing options...
openmind Posted October 21, 2013 Share Posted October 21, 2013 Or could it just be that the problems have been found and are now resolved? 0 Quote Link to comment Share on other sites More sharing options...
Walter Blanco Posted October 21, 2013 Share Posted October 21, 2013 source code has been published, hackers are studying it and finding the holes 0 Quote Link to comment Share on other sites More sharing options...
twhiting9275 Posted October 21, 2013 Share Posted October 21, 2013 because someone couldn't code their way out of a paper bag from the beginning 0 Quote Link to comment Share on other sites More sharing options...
vec Posted October 21, 2013 Share Posted October 21, 2013 Why don't you go make your own and leave us alone... I'm tired of your trolling comments because someone couldn't code their way out of a paper bag from the beginning 0 Quote Link to comment Share on other sites More sharing options...
PWPH Posted October 21, 2013 Share Posted October 21, 2013 Why all the patches? Better to have security patches then no patches at all. Being a WordPress user for 8 years I have seen many security patches over the years in that blogging software. In the long run nothing is safe on the internet, not even WHMCS. Let's just hope the WHMCS Team is getting an external security audit done as we speak, that could cut down some security problems in the future. 0 Quote Link to comment Share on other sites More sharing options...
twhiting9275 Posted October 21, 2013 Share Posted October 21, 2013 Why don't you go make your own and leave us alone... I'm tired of your trolling comments There's this awesome thing called an 'ignore list'. I'd suggest you make use of it, and welcome to it. If all you're going to do is complain about someone else's opinion, yeah, the problem isn't with someone else, it's with you. As far as you calling me a 'troll': Just because you don't like my opinion doesn't mean I'm a troll Just because my opinion on something is not positive, happy, glowy doesn't make me a troll. The reality: I've been using WHMCS quite a bit longer than most here. Yes, what I said was harsh, but it was also true. If it weren't, then we wouldn't have injection attacks that can be launched against the earliest versions, coming out on a weekly basis now. Unfortunately, my own apps are so embedded into WHMCS, it would take far too long to get into another client. That's not saying it's not been tried, it has. Unfortunately, at this time, there's nothing out there that's a realistic alternative... That does NOT however mean that I have to simply accept this and not continue to push for this spaghetti code to change! 1 Quote Link to comment Share on other sites More sharing options...
ebmocwen Posted October 21, 2013 Share Posted October 21, 2013 I'm glad the patches are released so quickly, it could be much worse. 0 Quote Link to comment Share on other sites More sharing options...
tsiedsma Posted October 21, 2013 Share Posted October 21, 2013 There's this awesome thing called an 'ignore list'. I'd suggest you make use of it, and welcome to it. If all you're going to do is complain about someone else's opinion, yeah, the problem isn't with someone else, it's with you. As far as you calling me a 'troll': Just because you don't like my opinion doesn't mean I'm a troll Just because my opinion on something is not positive, happy, glowy doesn't make me a troll. The reality: I've been using WHMCS quite a bit longer than most here. Yes, what I said was harsh, but it was also true. If it weren't, then we wouldn't have injection attacks that can be launched against the earliest versions, coming out on a weekly basis now. Unfortunately, my own apps are so embedded into WHMCS, it would take far too long to get into another client. That's not saying it's not been tried, it has. Unfortunately, at this time, there's nothing out there that's a realistic alternative... That does NOT however mean that I have to simply accept this and not continue to push for this spaghetti code to change! Quoting since there isn't a like button. This mess is ridiculous. The use of the mysql_ functions, the creation of their own Register Globals is absurd. WHMCS needs a ground up rewrite. I vote that 5.3.2 is a major bug fix that cleans up the code to allow them 6 months or so to do a complete rewrite with the help of cPanel who knows a thing or two about security. Also, hello fellow Iowa user! 1 Quote Link to comment Share on other sites More sharing options...
bear Posted October 22, 2013 Share Posted October 22, 2013 Quoting since there isn't a like button. Isn't that the odd looking star in the lower left of the postbit? Says something about "adding to this user's reputation"... 0 Quote Link to comment Share on other sites More sharing options...
gPowerHost Posted October 22, 2013 Share Posted October 22, 2013 I really want to like WHMCS. But from the code snippets I've seen, being a programmer for 36 years, I'm horrified. I hope the put every new feature on hold. I hope they dig deep in their pockets and have the guts to seriously examine their practices and get some help. Focus every ounce of resource they can muster on reviewing, auditing and rewriting. Obviously someone has it out for them. Too bad for us, the customers that have our data compromised and business on high alert. But I have no sympathy for WHMCS, they wrote the code, they should have had the guts to do serious self examination a long time ago. Because blaming hackers is just an excuse. We all have businesses that involve hackers and poorly written code. Having to help our customers steer away from poorly developed or maintained modules or scripts is a daily thing. Thankfully, we have good firewalls and rules to stop most of this stuff, but it is only a matter of time. Please, please, please take this seriously and only look inward for blame. Because until you come clean with yourselves, you aren't going to have a hope. I hope you make it. I hope you hear our pleas and take our businesses seriously. 0 Quote Link to comment Share on other sites More sharing options...
twhiting9275 Posted October 23, 2013 Share Posted October 23, 2013 Isn't that the odd looking star in the lower left of the postbit? Says something about "adding to this user's reputation"... That's not really a 'like', it just adds to the user's reputation outside of the thread 1 Quote Link to comment Share on other sites More sharing options...
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.