If you are running a webserver, especially a VPS or higher, you are probably vulnerable unless you've explicitly upgraded openssl or if you know your host has for you. It's not just https, there's also SSH, and even if you aren't using https, cpanel probably is.
I'd be worried whether I had vBulletin, XenForo, Wordpress or any other software on a public-facing web service.
|