I found this simple guide to patch magento 1.9.1.0 via FTP http://magentary.com/kb/apply-supee-5344-and-supee-1533-without-ssh/
Took me 5 mins to install and wheras before I was getting the vulnerable red box on https://shoplift.byte.nl after patching anc clearing cache I get the green safe box.
I cannot use SSH either - So I have clicked your link and have done what it says - entered into my files app/code/core/Mage/Adminhtml/Block/Dashboard/Graph.php - then what do I do?
This also worked for me. % mins and finished.
This worked for me. But I can't understand why Magento wouldn't do this from within the admin section of the site.
Sees like a crazy way to do this for something that should be really easy and straight forward.
Who exactly is magentary.com and do we trust them. Granted it looks like a useful site, but why don't the patches files in this format come directly from magento.com?
Overwrite the file with the one in the patch, right?
(in response to above)
Jimbo
did anyone reply (privately or any other way) regarding whether Magentary are to be trusted?
John
I found you issue in http://magento.stackexchange.com/questions/63858/critical-reminder-download-and-install-magento-secu...
Hope that it's useful for you!
yeah this scares me too. I would love to apply the patches by FTP using the files from Magentry - but i dont know who they are and why we should trust them ! The site is totally new