Logaholic Security Update
February 26, 2008 by michael
Logaholic has released version 2.0 RC8, which adresses some security issues, fixes a number of bugs and adds a few features.
Security Update:
- Added Anti-SQL injection measures.
- Added Anti-cross site scripting
- Added Anti-HTML injection measures.
Other Changes:
- Fixed bug preventing the use of some faster summary tables (Speeds up important reports)
- Fixed various Logaholic SPE issues, added branding option
- Added search to various reports
- Added custom setting for visit/session timeout period
- Added resove IP on/off switch for click-trail reports
This release should fix the vulnerabilities mentioned on various security related websites (i.e SecurityFocus.com). If you have any further information concering Logaholic security, please contact us to report the issue.
I would like to mention that these issues were classified as ‘moderate risk’. Moreover, they could only be taken advantage of by others if your logaholic directory is not password protected.
Needless to say, we advise everyone to password protect the logaholic installation directory.
We also advise everyone to upgrade to this version. All versions on our site have been updated. If you are a logaholic customer, please log in to your account and access your Order History. You will be able to download your update from there.
New Logaholic 2.0 Licenses available
February 1, 2008 by michael
Logaholic has changed it’s offering of product versions. Most importantly you can now buy a 5 website/profile version next to the original full version.
Here are the details:
Logaholic Web Analytics - 5 Website profiles ($67)
Single user license, for personal use only. With this license you can install Logaholic on one physical server and analyze up to 5 different websites.
Logaholic Web Analytics - Full Version ($167)
Single user license, for personal use only. With this license you can install Logaholic on one physical server and analyze as many websites as you want.
This latest release (2.0 rc5) has another new feature that lets you dynamically search within reports. Check out some screenshots:







