Cotton Rohrscheib

The Cotton Club Blog & Podcast

  • Home
  • Bio
    • Resume
  • Blog
    • Faith & Family
    • Marketing & Tech
    • Farm & Business
    • Entertainment
    • Health & Wellness
    • Urban Farming
    • Weekend Projects
  • Media
    • Newsletter
    • Photo Galleries
    • Instagram Feed
    • Video Archives
    • Podcasts
    • Music Playlists
  • Books
  • Connect
    • Rohrscheib Capital
    • Disclaimer
    • Privacy Policy
You are here: Home / Marketing & Tech / aMember Security Update…

aMember Security Update…

December 12, 2007 by Cotton Rohrscheib 1 Comment

We have a few clients that utilize aMember Membership Management software.  There is a serious security hole found in aMember Pro. It affects all aMember Pro versions from 2.4.1 to 3.0.8. It is absolutely NECESSARY to take actions agains this and protect your aMember installation. Below are steps to follow. Please note that not all steps are necessary. In fact, if you follow just one step completely – you are safe.

There is just a few vulnerable files, and in fact these files are not needed for most installations of aMember. If you are not using PayPal PRO, SecPay and PaymeNow payment processors, you can safely delete the following files from your installation and you’re all set.

amember/plugins/payment/paymenow/config.inc.php
amember/plugins/payment/paymenow/paymenow.inc.php
amember/plugins/payment/paypal_pro/paypal_pro.inc.php
amember/plugins/payment/secpay/secpay.inc.php
amember/plugins/payment/secpay/config.inc.php
amember/plugins/payment/manual_cc/config.inc.php

I contacted the software developers who wrote the aMember application after I saw SecurityNote04 and had them personally go in and check our client’s installations for us to make sure we are in good shape on this vulnerability and they have assured us that we are but if you are a developer and run aMember I recommend you do some checking with your installations and make sure you are in good shape as well.  The method I outlined above will work 100% of the time if you are running 3.08.

Share this post on:

  • Click to share on Facebook (Opens in new window) Facebook
  • Click to share on X (Opens in new window) X
  • Click to share on LinkedIn (Opens in new window) LinkedIn
  • Click to share on Pinterest (Opens in new window) Pinterest

Related

About Cotton Rohrscheib

The Cotton Club is a monthly podcast hosted by me, Cotton Rohrscheib. I'm a 52 year old entrepreneur w/ ADHD, OCD (and now AARP) that refuses to grow up as I grow old. I have collaborated and invested in hundreds of projects throughout my career in multiple industries such as; technology, healthcare, and agriculture. I also have 25 years experience in the marketing industry as a co-founder of an award-winning advertising agency. I will undoubtedly cover a wide variety of topics on my podcast while sharing some really crazy stories and situations that I've been fortunate to witness firsthand. I also have a book coming out in 2025 titled, "Mistakes were Made"

Comments

  1. nikki gail says

    June 24, 2008 at 3:39 am

    I need a good programmer/developer to help me with amember software. Can you recommend someone? Greatly appreciate your help. I’m in Calif.

    Reply

Leave a Reply to nikki gailCancel reply

Let’s Connect

  • Email
  • Facebook
  • Instagram
  • LinkedIn
  • Twitter

Recent Updates

  • EP:032 – Cotton Rohrscheib & Diana DeHart
  • Challenges & Opportunities Going into 2025
  • Find us at the 2025 Arkansas Women in Agriculture Conference in Hot Springs, Arkansas
  • Be Sure to Checkout FBN’s Farmers First™  Crop Nutrition & Adjuvant Lineup for 2025
  • What we all need in Dark Times…

Blog Categories

  • Blog (419)
  • Entertainment (376)
  • Faith & Family (147)
  • Farm & Business (288)
  • Health & Wellness (33)
  • Marketing & Tech (584)
  • Podcasts (31)
  • Urban Farming (20)
  • Weekend Projects (1)

Listen & Subscribe

Blog Archives

Join the Cotton Club!

 

Content Copyright: 2001-2025
Cotton Rohrscheib | Rohrscheib Capital