FimuroHost's WordPress-optimised packages use tuned firewall rules and several extra layers of protection to keep WordPress sites safe.
One of those layers is switching off a handful of PHP functions that attackers often abuse to run commands on a server once they've found a weak plugin.
The disabled functions
execopcache_get_configurationopcache_get_statuspassthruparse_ini_filepopenproc_openshell_execshow_sourcesystem
Will this affect my site?
Almost certainly not. Well-written WordPress plugins and themes don't rely on these functions, because many hosts block them.
If one does, you'll usually see an error like Call to undefined function exec() in your error log. Since PHP 8, disabled functions behave as if they don't exist.
If you really need one of them
- Look for an alternative plugin that does the same job without shell access. This is usually the quickest fix.
- Move to standard Cloud Hosting: you can host WordPress on a standard Linux Cloud Hosting package, where these WordPress-specific restrictions don't apply. Contact support and we'll help you choose and move the site.
Tip
Only install plugins from trusted sources and keep them updated. Disabled functions reduce the damage a vulnerable plugin can do, but they don't replace good updates.
Need help?
If something doesn't work as described, open a support ticket from your client area or message us on WhatsApp at 01818160926. Tell us the domain name and what you have already tried, and we'll take it from there.
Categories
Written by
FimuroHost Team
Technical Writer