SUPEE-10975 is an important security update for Magento to address remote code execution and SQL injection vulnerabilities.
Where to download
Its best downloading the patch from the Magento.com download section - or via MDA - the Magento download tool (this is what this guide will use).
Applying the patch
The application of this patch is relatively straightforward. I'd recommend doing this in staging/development before attempting on live (if you don't have a dev. site follow this guide to create one).
Change directory to your Magento document root and fetch
mda.phar(the Magento downloader tool), if using Enterprise, refer to the documentation here to provide your id/token.
cd /microcloud/data/domains/example/domains/example.com/http wget -O mda.phar --no-check-certificate https://raw.githubusercontent.com/sonassi/magento-download-archive/master/bin/mda.phar php mda.phar
Select either CE/EE patch as appropriate,
1: Ce-patch 3: Ee-patch
Select the auto detected version of Magento,
0: 188.8.131.52 (auto detected)
Select the SUPEE-10975 patch (or press
mto download all missing patches),
0: SUPEE-10975 for CE 184.108.40.206-220.127.116.11 (PATCH_SUPEE-10975_CE_v18.104.22.168_v1.sh/SUPEE-10975)
Copy the patch to your Magento document root and apply it,
cp ./downloads/PATCH_SUPEE-10975 . bash PATCH_SUPEE-10975
Clean your Magento cache using MageRun,