Follow us on Twitter X-Cart on Facebook Wiki
Shopping cart software Solutions for online shops and malls

X-Cart 4.5.5 released
 
Closed Thread
   X-Cart forums > News and Announcements
 
Thread Tools
  #21  
Old 02-13-2013, 06:16 AM
  photo's Avatar 
photo photo is offline
 

X-Wizard
  
Join Date: Feb 2006
Location: UK
Posts: 1,146
 

Default Re: X-Cart 4.5.5 released

Quote:
Originally Posted by Danimal
My dumb luck. Not even done with a mild customization and settings updates for a new 4.5.4 site and 4.5.5 is out. How hard is the upgrade? The only customizations thus far are the header and the rest is CSS. Nothing special, just minor HTML changes.

I did the 4.5.4 to 4.5.5 update on my test site last night and it went extremely smooth, only had one file I had to patch manually.
__________________
v4.1.10
In Dev v4.5.x


"If you don't keep an eye on your business, someone else will."

The following user thanks photo for this useful post:
Danimal (02-13-2013)
  #22  
Old 02-13-2013, 09:25 AM
 
carpeperdiem carpeperdiem is offline
 

X-Guru
  
Join Date: Jul 2006
Location: New York City, USA
Posts: 5,399
 

Default Re: X-Cart 4.5.5 released

Quote:
Originally Posted by RichieRich
Is it both customer and admin? I thought it was just the admin side.

If it's just the admin, then no worries. The moment I have to tell my customers they must change their passwords, I will get very pissy.
__________________
xcart 4.5.4 gold+ w/x-payments 1.0.6; xcart gold 4.4.4
  #23  
Old 02-13-2013, 08:59 PM
  cflsystems's Avatar 
cflsystems cflsystems is offline
 

Veteran
  
Join Date: Apr 2007
Posts: 13,541
 

Default Re: X-Cart 4.5.5 released

This password thing was an option in previous versions.... I too don't see the need to hard code it.
__________________
Steve Stoyanov
CFLSystems.com
Web Development
  #24  
Old 02-13-2013, 09:20 PM
 
lymwuwu lymwuwu is offline
 

Member
  
Join Date: Oct 2008
Posts: 27
 

Default Re: X-Cart 4.5.5 released

Quote:
Originally Posted by Danimal
My dumb luck. Not even done with a mild customization and settings updates for a new 4.5.4 site and 4.5.5 is out. How hard is the upgrade? The only customizations thus far are the header and the rest is CSS. Nothing special, just minor HTML changes.

Me too, with minor customization. I got a lot of can't patch error with the upgrade pack for x-cart 4.5.4 to x-cart 4.5.5
  #25  
Old 02-13-2013, 09:21 PM
  cflsystems's Avatar 
cflsystems cflsystems is offline
 

Veteran
  
Join Date: Apr 2007
Posts: 13,541
 

Default Re: X-Cart 4.5.5 released

You do know it is not mandatory to upgrade every time new version is out
__________________
Steve Stoyanov
CFLSystems.com
Web Development
  #26  
Old 02-13-2013, 11:50 PM
  ambal's Avatar 
ambal ambal is offline
 

X-Cart team
  
Join Date: Sep 2002
Posts: 4,102
 

Default Re: X-Cart 4.5.5 released

Quote:
Originally Posted by carpeperdiem
If it's just the admin, then no worries. The moment I have to tell my customers they must change their passwords, I will get very pissy.

It is for admin side only. This new security feature can be disabled for customers side.
__________________
Sincerely yours,
Alex Mulin
VP of business development for X-Cart
X-Payments project manager

The following 3 users thank ambal for this useful post:
ADDISON (02-14-2013), bullfrog (02-18-2013), rocky (02-13-2013)
  #27  
Old 02-14-2013, 12:41 AM
  random's Avatar 
random random is offline
Advanced Staff Users
 

X-Cart team
  
Join Date: Dec 2008
Posts: 79
 

Default Re: X-Cart 4.5.5 released

Quote:
Originally Posted by cflsystems
This password thing was an option in previous versions.... I too don't see the need to hard code it.

This is a part of security improvements introduced in 4.5.5.
"Weak" passwords are not suitable for admin/provider accounts now.

There is still an option to enable/disable such feature, but it only affects customer accounts.

p.s. Simply increasing a password length from 6 to 7 characters you increase password discovery time by about 100 times.
You can refer to the following page for more info:
http://blog.agilebits.com/2012/03/16/strong-security-requires-strong-passwords/
__________________
Sincerely yours,
Vladimir Petrov
Senior X-Payments Developer

The following 4 users thank random for this useful post:
ADDISON (02-14-2013), anandat (02-14-2013), DAV (02-14-2013), qualiteam (02-14-2013)
  #28  
Old 02-14-2013, 02:05 AM
 
kevinrm kevinrm is offline
 

X-Adept
  
Join Date: Aug 2003
Posts: 950
 

Default Re: X-Cart 4.5.5 released

Broken down - biggest mistake I ever made to upgrade this thing, I'll pay $$$ to get this running again.
__________________
X-Cart 5.3.6.4 Live
PHP7.2.22
FPM/FastCGI - enabled
Zend OpCache OFF - Won't work with phar extension in cPanel on PHP7.1+
10.3.16-MariaDB
Apache 2.4.34
CENTOS 6.8 64Bit Single Quad-Core E3-1241v3 3.4Ghz 8M 1600 w/ HT
32GB RAM 2x 512GB Samsung 850 Pro SSD RAID 1
  #29  
Old 02-14-2013, 04:17 AM
 
kevinrm kevinrm is offline
 

X-Adept
  
Join Date: Aug 2003
Posts: 950
 

Default Re: X-Cart 4.5.5 released

12 hours later...

Took the whole thing back to 4.5.4. Made sure all files were stock. Re-upgraded, no files in question this time. But...locked out as admin again. Manually applied patch.sql line by line. Removed cache files. Removed cookies, removed cache. Sends me a link to restore my login, that sends me to the customer front end. Try to re-do the password, supposedly works but then locked out again.

Paid $139 for the "Hot Rush". There is a guy giving me advice bits and pieces, I feel like I'm in school, it seems they don't want to go in there and directly fix it. I'm back to square one - completely locked out as admin, my store is closed, and probably will lose $1k-$2k in sales because of this.


This experience sucks, there's something wrong here because I've been doing this for 10 years with x-cart and have never got stuck like I have this time.
__________________
X-Cart 5.3.6.4 Live
PHP7.2.22
FPM/FastCGI - enabled
Zend OpCache OFF - Won't work with phar extension in cPanel on PHP7.1+
10.3.16-MariaDB
Apache 2.4.34
CENTOS 6.8 64Bit Single Quad-Core E3-1241v3 3.4Ghz 8M 1600 w/ HT
32GB RAM 2x 512GB Samsung 850 Pro SSD RAID 1
  #30  
Old 02-14-2013, 04:31 AM
 
kevinrm kevinrm is offline
 

X-Adept
  
Join Date: Aug 2003
Posts: 950
 

Default Re: X-Cart 4.5.5 released

Could anyone here with a working copy of 4.5.5 please take a look at their "xcart_xauth_user_ids" table and see the structure? Mine only shows 5 columns, does yours have more?

Really not please here....


[14-Feb-2013 20:50:45] SQL error:

SQL query : SELECT xcart_xauth_user_ids.auth_id, xcart_xauth_user_ids.id, xcart_xauth_user_ids.identifier, xcart_xauth_user_ids.provider, xcart_xauth_user_ids.service, xcart_customers.usertype, xcart_xauth_user_ids.signature FROM xcart_customers INNER JOIN xcart_xauth_user_ids ON xcart_customers.id=xcart_xauth_user_ids.id AND xcart_customers.usertype IN ('A','P')
Error code : 1054
Description : Unknown column 'xcart_xauth_user_ids.signature' in 'field list'
Request URI: /admin/home.php?keep_https=yes
Backtrace:
/home/ocha/public_html/include/func/func.db.php:309
/home/ocha/public_html/include/func/func.db.php:209
/home/ocha/public_html/include/func/func.db.php:489
/home/ocha/public_html/include/func/func.security.php:77
/home/ocha/public_html/admin/auth.php:105
/home/ocha/public_html/admin/home.php:44
__________________
X-Cart 5.3.6.4 Live
PHP7.2.22
FPM/FastCGI - enabled
Zend OpCache OFF - Won't work with phar extension in cPanel on PHP7.1+
10.3.16-MariaDB
Apache 2.4.34
CENTOS 6.8 64Bit Single Quad-Core E3-1241v3 3.4Ghz 8M 1600 w/ HT
32GB RAM 2x 512GB Samsung 850 Pro SSD RAID 1
Closed Thread
   X-Cart forums > News and Announcements


Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -8. The time now is 12:57 AM.

   

 
X-Cart forums © 2001-2018