HostBill Security Patch for 2.X: Critical Security Issue

Dear Clients!
HostBill 2.x security patch.
Last night one of our clients notified us about potential security threat affecting HostBill versions 2.x, which may allow to access admin area with previously stolen session cookie.

Please download this patch as soon as possible: https://hostbillapp.com/clientarea/index.php?cmd=module&module=downloads&file=11
To apply patch please extract archive contents in your HostBill directory, or upload its contents directly to your install (there is only one file that requires overwriting).

We’re not aware of any installation compromised other than reported last night.
If you have questions or any concerns please feel free to contact us. We do apologize for any inconvenience.

Note: 2.8 version download package contains this patch by default from now on, 2.9 version that is scheduled to release next week will also contain it.

HostBill 2.8.0 is now available to download!

We’re happy to announce that HostBill 2.8 has just been released and is available to download from our client area.

New version quick links:

  • Full Changelog is available in our forum
  • The new version can be downloaded from client area
  • Installation/Upgrade HowTo can be found in documentation.

Another set of OnApp module updates is here!

It’s been almost a week since last OnApp module update – so it’s about time to bring you new improvements/bugfixes to our HostBill+OnApp integration!

Changes / New features:

  • Fixed: It’s not possible to terminate user that has been previously suspended
  • Fixed: Admin doesn’t see virtual machines of suspended user
  • Fixed: Auto-created VM for “Single machine” product has other root pass than set in HostBill
  • Fixed: User custom OS Templates are not listed in client area for new VM creation
  • Fixed: VM fails to autoprovision when cpu share is less than cpu cores limit in package
  • Fixed: Listing IPs in client area for VMs with more than one IP address assigned bug
  • New IP is now automatically assigned after ordering additional IP through OnApp:Ip addon.
  • When addon like extra IP is hidden, but assigned to product – it won’t display in cart but will be available to order from client area
  • When customer orders single VPS with more than one IP, it will be assigned to his VM automatically
  • Assigning new IP address in client area now invokes VM Network Rebuild
  • Added unassigned IP count in client area VM:Ip tab

Download: OnApp 2.1 Gold module for HostBill from client area

Update Instructions:

Place downloaded package in your main HostBill directory and unzip it there.

Full changelog:

http://hostbillapp.com/features/apps/onapp.html

Coming up in HostBill 2.8 – Twitter Plugin – try it now!

We love Twitter here in HostBill – that’s why we’ve created a simple plugin for our App to show latest Twitter updates in client area homescreen – now you will be able to update all your clients with latest tweets. This plugin will be available in HostBill 2.8 – but you can get it now!

Download & Install
1. Download file from HostBill addons download section
2. Copy zip archive into HostBill main directory
3. Extract all files
4. Activate and use! 

Find out more in HostBill documentation.

OnApp module updates – new features / fixes available

We’ve got incredible feedback from OnApp+HostBill users about features they would like to see, and minor bugs. Thanks for all of your reports/feature requests – keep them coming! So here it is – another update of our OnApp integration:

Changes / New features:

  • Added backup space slider to Forms
  • Added simple vm controls to admin area: power off/power on and destroy machine
  • List of virtual machines in admin area is now auto-refreshed
  • Added direct link in admin area to client virtual machine in OnApp
  • Terminate now removes all client virtual machines, suspends user and terminates afterwards
  • Fixed cpu shares issue in forms for low shares count
  • Fixed cpu shares issue when cpu shares was set to 100% and cpu limit to over 6cpus

Download: OnApp 2.1 Gold module for HostBill from client area

Update Instructions:

Place downloaded package in your main HostBill directory and unzip it there.

Full changelog:

http://hostbillapp.com/features/apps/onapp.html