[kwlug-disc] Backup and Migrate module vulnerability

Khalid Baheyeldin kb at 2bits.com
Wed Jan 24 14:10:33 EST 2018


To those who use Drupal on this list.

If you use Drupal and have backup_migrate module enabled, please read this
security alert carefully.

https://www.drupal.org/sa-contrib-2018-004

Better yet, disable that module and instead, use a crontab script with
drush arb to do the backup and NEVER store the backup under web root.
Always store it somewhere else.

-- 
Khalid M. Baheyeldin
2bits.com, Inc.
Fast Reliable Drupal
Drupal optimization, development, customization and consulting.
Simplicity is prerequisite for reliability. --  Edsger W.Dijkstra
Simplicity is the ultimate sophistication. --   Leonardo da Vinci
For every complex problem, there is an answer that is clear, simple, and
wrong." -- H.L. Mencken
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://kwlug.org/pipermail/kwlug-disc_kwlug.org/attachments/20180124/46307914/attachment.htm>


More information about the kwlug-disc mailing list