Category Archives: Technical

Joomla News

There’s a new Joomla version out – one reason to upgrade is the old version has a cross-site scripting vulnerability.

  • Version affected 2.5.14 and earlier 2.5.x versions. 3.1.5 and earlier 3.x versions.
  • Vulnerability: Inadequate filtering leads to XSS vulnerability in com_contact.

The other reason to upgrade is that Joomla 3.2 has a host of exciting new features. Here’s one of those trendy infographics to give you the details

Joomla 3.2 – 10 new features – An infographic by the team at JoomlArt.com

Tomcat 8 now available in Beta

tomcatThe Apache Tomcat Project is proud to announce the next release candidate for Apache Tomcat 8 – 8.0.0-RC3 (alpha). Tomcat 8 is aligned with Java EE 7. In addition to supporting updated versions of the Java EE specifications, Tomcat 8 includes a number of improvements compared to Tomcat 7. The notable changes include:

  • Support for Java Servlet 3.1, JavaServer Pages 2.3, Java Unified Expression Language 3.0 and Java WebSocket 1.0.
  • The default connector implementation is now the Java non-blocking implementation (NIO) for both HTTP and AJP.
  • A new resources implementation that replaces Aliases, VirtualLoader, VirtualDirContext, JAR resources and external repositories with a single, consistent approach for configuring additional web application resources. The new resources implementation can also be used to implement overlays (using a master WAR as the basis for multiple web applications that each have their own customizations).

Apache Tomcat 8.0.0-RC3 includes numerous fixes for issues identified in RC1 as well as a number of other enhancements and changes. The notable changes since RC1 include:

  • Switch to UFT-8 by default for connectors and example web applications.
  • Switch to the asynchronous logger and one line formatter by default.
  • Add Servlet 3.1 non-blocking IO support to the AJP connectors.

Full details of these changes, and all the other changes, are available in the Tomcat 8 changelog.

The purpose of this release candidate is to give users an opportunity to test Tomcat 8 and provide feedback to the Tomcat community. It has been given an alpha status which means that it is not judged as being ready for production usage. The implementations of the 4 Java EE 7 specifications are all complete but there is some internal refactoring to be completed before the alpha label is removed.

Download the Release Candidate | Get Tomcat Hosting

Attention Joomla and WordPress users

Two updates within 24 hours.

1. Joomla users should check what version they are using and download and install the latest patch.

Joomla! version 2.5.13 and earlier 2.5.x versions; and version 3.1.4 and earlier 3.x versions has been declared vulnerable to Inadequate filtering leads to the ability to bypass file type upload restrictions. This basically means if you have a upload box on your site, hackers can use it to upload malicious code to your hosting space.

The solution is to upgrade today to the newest Joomla version, Upgrade to version 2.5.14 or 3.1.5 depending on which release you are on.

2. WordPress has released a new version, which fixes 700 bugs and includes a brand new template. The new version is 3.6 and all users are advised to upgrade.

2020Media strongly recommends users make a backup before doing an upgrade. We are also happy to do upgrade for customers on request, free of charge.

 

CiviCRM July Newsletter

The CiviCRM July Newsletter is hot off the press.

newsletter-cookbookView online at CiviCRM.org

There’s a new CiviCRM book out! The CiviCRM Cookbook covers a wide range of CiviCRM core and component topics with practical in depth recipes with accompanying screenshots.

The CiviCRM Starter Kit is a Drupal-and-CiviCRM-in-one bundle which makes downloading and installing a fairly standard instance of Drupal and Civi straightforward. It includes a sensible selection of modules and extensions to get you going.

2020Media will install this for you free of charge.

You’ve decided to use CiviCRM. Now what? This 45 minute episode will cover what you should (and should not) do before starting to use CiviCRM. First hangout – Tuesday, July 16th at 9am Pacific
Introduction to CiviCRM Mini-series: Before You Login Google Hangout link

Security News

Announcing the 6th stable release of CiviCRM 4.3, containing small bug fixes and two minor security updates to make your CRM more stable and secure.

This is a security release. You should upgrade your site immediately. If you are unable to do so and host with 2020Media, we’re happy to help.

First look at ZipApp

Actually it’s more of a second look. My first look back in April showed a product with a lot of promise but was clearly not ready.

What is ZipApp?

Simply put, ZipApp is a free tool from Microsoft to help you  build Apps for Windows 8. You don’t need to be a programmer. You get full access to the source code. It’s designed to be simple and quick to get going, with dozens for templates provided.

ZipApp
ZipApp

You can create a Zip App account at www.zipapp.co.uk and start to put your app together.

To build the app package from the Zip App project file you’ll need to download a copy of Visual Studio Express from here http://www.microsoft.com/visualstudio/eng/products/visual-studio-express-for-windows-8

This will give you all the tools you need to build an app.

Once you’ve got an app, in order to submit it to the store, you’ll need to sign up for a developer account – info can be found here https://appdev.microsoft.com/StorePortals/en-us/Account/Signup/Start/

There is a small charge for a developer account (individual or corporate) however you get a free developer account with an MSDN subscription if you have one. As an aside, you get an MSDN subscription as part of Biz Spark which can be an extremely cost effective way of getting a load of free software and networking opportunities.

Windows 8 Phone has recently been added with Beta support.

 

ZipApp templates
ZipApp templates

Then you’ll be able to submit as many apps to the store as you wish. There will be the option to have a third party publish your app too. Microsoft are currently working on a solution to enable people to publish their ZipApp application via a 3rd party, but it’s not ready for broad availability. In effect you would simply press a button and someone else would publish your application using their store account. This option currently leads to a mail form. We added our address to this in April and to date there’s been no response.

In summary, the tools work really well to create the app, but the unsophisticated developer/designer is left hanging at the end with no way to actually the app onto a Windows 8 device.