Update about security of OpenX software

In recent weeks, many stories have been published about security issues regarding the OpenX Ad Server software. Please find below some additional information on the current situation regarding the security of the OpenX software.

The most recent and most severe issues all resulted from a security problem in a third party open source component named “Open Flash Charts 2″. This component is used in the Video Ads plugin that comes with OpenX v2.8.4 and higher. The problem has been corrected with the release of OpenX v2.8.7. Instead of performing a full upgrade, a much simpler task is to just upgrade the Video Ads plugin. If you run OpenX version 2.8.3, which doesn’t have the Video ads plugin, you will not be affected by this particular issue.

There is also a smaller but still significant issue in the OpenX core software. It affects all version of the OpenX v2.8 software, up to v2.8.5 and it is relatively easy to fix. The way to do that is outlined in an OpenX forum post. Applying this patch is not complicated, but it does require some skill in editing php software files.

You can find out which version of OpenX you have by looking at the source code of any page of your OpenX system, including the login page. The version number is displayed in line 4 of that source code.

To summarize the above:

  • if you run OpenX v2.8.2 or older, an upgrade to version 2.8.3 would be recommended, including a patch for the security issue that was discovered in August.
  • if you run OpenX v2.8.3, applying the security patch that was published in August should be sufficient.
  • if you run OpenX v2.8.4 or higher, it would be smart to upgrade the Video Ads plugin, and apply the patch for the security issue, or to upgrade to OpenX v2.8.7.
Share this on:
  • Twitter
  • LinkedIn
  • Facebook
  • email

OpenX Statistics as Graphs plugin updated (v1.0.3)

The team at AdserverPlugins.com is releasing an update of the free Statistics as Graphs plugin for the OpenX Ad Server. This version 1.0.3 is available for download right now.

This is a security fix release that takes care of one issue:

  • A vulnerability has been discovered in the third-party open source graphing component Open Flash Charts that is used by this plugin to draw the graphs.

As always with security fix releases, it is crucial to upgrade to the newest version as soon as possible.

Share this on:
  • Twitter
  • LinkedIn
  • Facebook
  • email

OpenX Statistics as Graphs plugin updated (v1.0.2)

OpenX Statistics as Graphs plugin

OpenX Statistics as Graphs plugin

The team at AdserverPlugins.com have released an update of the free Statistics as Graphs plugin for the OpenX Ad Server. This version 1.0.2 is available for download right now.

They’re also reporting that this plugin has been downloaded over 1,000 times to date.

Share this on:
  • Twitter
  • LinkedIn
  • Facebook
  • email

New Free Plugin for OpenX: Geolocation Magic Macros

The team at Adserverplugins.com is announcing their newest free plugin for the OpenX Ad Server: Geolocation Magic Macros.

Geolocation Magic Macros pluginfor OpneXThe Geolocation Magic Macros plugin for OpenX, Magic Geo in short, enables you to dynamically insert the name of the geographic location of a visitor into a banner. This can be used in both the HTML code and the destination URL. Using this new feature, you can automatically make a banner adjust its content to the location of a visitor.

Demonstration

The banner below demonstrates this by showing your country name and country code, and the name of the continent, and a link to a Wikipedia article about your country.

The code used in this HTML banner looks like this:
You are currently in <a href="http://en.wikipedia.org/wiki/{geo.country.enc}" title="read about {geo.country} on Wikipedia" target="_blank">{geo.country}, country code {geo.country_code}</a>, which is part of {geo.continent}.

More information and download

There is a product page containing all information, documentation and a link to download this free Geolocation Magic Macros plugin for OpenX.

Share this on:
  • Twitter
  • LinkedIn
  • Facebook
  • email

New version of the OpenX Statistics as Graphs plugin

The team at AdserverPlugins.com have released an update of the free Statistics as Graphs plugin for the OpenX Ad Server. This version 1.0.1 is available for download right now.

More information can be found in the blog post announcing this new release of the plugin.

Share this on:
  • Twitter
  • LinkedIn
  • Facebook
  • email

Behavioral Targeting and Retargeting Plugin for OpenX

The team at AdServerPlugins.com is proud to announce the upcoming release of their Behavioral Targeting and Retargeting plugin for the OpenX Ad Server.

This plugin was designed primarily for use by publishers operating one or more websites. It enables them to help their clients to deliver their advertising campaigns to visitors who are most likely to be interested in the products or services being promoted. This is done by capturing and storing data about the visitor’s surfing behavior and search behavior, or demographic data. When creating an advertising campaign, the ads can be targeted to this known data about the visitor.

Behavioral Targeting and Retargeting Plugin for OpenX Ad Server

Information about this OpenX plugin, including an explanation of the concepts of behavioral targeting and retargeting, can be found at the AdServerPlugins.com website.

Share this on:
  • Twitter
  • LinkedIn
  • Facebook
  • email

OpenX Statistics as Graphs plugin updated

Display Statistics as Graphs using a free plugin for OpenX

Display Statistics as Graphs using a free plugin for OpenX

The team at AdserverPlugins.com have released an update of their free “Statistics as Graphs” plugin. This version 1.0.0 release is available for download right now at their website.

The new version now displays graphs for almost all statistics: advertisers, campaigns, banners, web sites, zones and global history. Graphs are now available for all user types (administrators, managers, advertisers, website owners). Every graph has buttons to navigate to the previous and next month, or to go up a level to show the current year’s statistics. Clicking a bar will drill down into the underlying statistics, down to a day graph with an hourly break down.

The graphs are now displayed using the open source product “Open Flash Chart 2“, providing more flexibility and charting options than the Google Visualisation API that was used for the first beta release.

Share this on:
  • Twitter
  • LinkedIn
  • Facebook
  • email

Kick Starting the OpenX Plugin Ecosystem

Ever since the release of OpenX Ad Server v2.8 in April 2009, developers have been able to make third party plugins to enhance the functionality of the software. The concept is simple, but we are not seeing a flow of plugins yet. The team at AdServerPlugins.com intend to break through that standstill by publishing free plugins that demonstrate the concept, and by developing plugins for paying customers. We also want to provide a platform for developers to promote their plugins (both free and commercial) by opening this website to them. In short, we want to kick start the OpenX plugin ecosystem.

Read my blog post about Kick Starting the OpenX Plugin Ecosystem over at AdServerPlugins.com.

The first free plugin is also available, it can be used to display OpenX statistics as a graph.

Share this on:
  • Twitter
  • LinkedIn
  • Facebook
  • email