Quote reyalp:
''FWIW, servers should be able to update and work with the latest etpro (I only tested it very briefly, so there may be something I missed). If clients update, they will be kicked by etpro for integrity, regardless of which server version they connect to.
Updating servers is probably a good idea, since the directory traversal thing can have quite nasty consequences. The remapshader thing requires malicious serveradmins, which are a problem even without that exploit.
If you are using ETTV as your server executable, you may want to turn off sv_allowdownload. The patch readme suggests you can use www redirects with this off, but I'm pretty sure it disables both.''