Thursday, August 11, 2022
LetsAskBinu.com
  • Home
  • Cybersecurity
  • Cyber Threats
  • Hacking
  • Protection
  • Networking
  • Malware
  • Fintech
  • Internet Of Things
No Result
View All Result
LetsAskBinu.com
No Result
View All Result
Home Hacking

Critical PHP Flaws Allows Attackers to Execute Remote Code

Researcher by Researcher
June 25, 2022
in Hacking
0
Critical PHP Flaws Allows Attackers to Execute Remote Code
189
SHARES
1.5k
VIEWS
Share on FacebookShare on Twitter


Critical Flaw QNAP

QNAP released a security advisory detailing the critical PHP vulnerabilities that allow an attacker to Remote Code on QNAP NAS Devices.

According to the advisory, “A Vulnerability has been reported to affect PHP versions 7.1.x below 7.1.33, 7.2.x below 7.2.24, and 7.3.x below 7.3.11 with improper nginx configuration. If exploited, the vulnerability allows attackers to gain remote code execution”.

The three-year-old flaw, tracked as (CVE-2019-11043), has a CVSS severity score of 9.8 and affects several PHP versions. For the vulnerability to be exploited, both Nginx and PHP-fpm must be running.

The Vulnerability Affects the Following QNAP Operating System Versions:

  • QTS 5.0.x and later
  • QTS 4.5.x and later
  • QuTS hero h5.0.x and later
  • QuTS hero h4.5.x and later
  • QuTScloud c5.0.x and later

EHA

Only PHP installations with improper Nginx configurations are affected by this flaw. Moreover, both Nginx and PHP-fpm must be installed and running on the NAS device for the vulnerability to be leveraged.

The company noted that QTS, QuTS hero or QuTScloud does not have Nginx installed by default; QNAP NAS is not affected by this vulnerability in the default state.

Patch Available

The patched OS versions include:

  • QTS 5.0.1.2034 build 20220515 and later
  • QuTS hero h5.0.0.2069 build 20220614 and later

QNAP inform the customers who cannot locate the ransom note after upgrading the firmware to enter the received DeadBolt decryption key to reach out to QNAP Support for assistance

On a regular basis, it is recommended to regularly update your system to the latest version to benefit from vulnerability fixes. Customers can check the product support status to observe the recent updates available for their NAS model.

QNAP customers who would like to update their NAS devices to the latest firmware automatically need to log on to QTS, QuTS hero, or QuTScloud as administrator and click the “Check for Update” button under Control Panel > System > Firmware Update.

The customers can also download the update from the QNAP website. Go to Support > Download Center and then perform a manual update for your specific device. Notably, this warning comes a week after QNAP revealed that it’s thoroughly investigating one more wave of ‘DeadBolt ransomware’ attacks targeting QNAP NAS devices running outdated versions of QTS 4.

You can follow us on Linkedin, Twitter, Facebook for daily Cybersecurity updates.





Source link

Related articles

Hackers Use Open Redirect Vulnerabilities to Deliver Phishing Content

Hackers Use Open Redirect Vulnerabilities to Deliver Phishing Content

August 10, 2022
Hackers Exploiting High-Severity Zimbra Flaw to Steal Email Account Credentials

Hackers Exploiting High-Severity Zimbra Flaw to Steal Email Account Credentials

August 8, 2022
Tags: AttackerscodecriticalExecuteflawsPHPRemote
Share76Tweet47

Related Posts

Hackers Use Open Redirect Vulnerabilities to Deliver Phishing Content

Hackers Use Open Redirect Vulnerabilities to Deliver Phishing Content

August 10, 2022
0

Researchers at Resecurity noticed threat actors leveraging Open Redirect Vulnerabilities which is popular in online services and apps to evade...

Hackers Exploiting High-Severity Zimbra Flaw to Steal Email Account Credentials

Hackers Exploiting High-Severity Zimbra Flaw to Steal Email Account Credentials

August 8, 2022
0

Zimbra CVE-2022-27824 has been added to the CISA’s “Known Exploited Vulnerabilities” catalog as a new vulnerability. Hackers are actively exploiting...

24-Year-Old Australian Hacker Arrested For Creating and Selling Spyware

24-Year-Old Australian Hacker Arrested For Creating and Selling Spyware

August 2, 2022
0

A 24-year-old man was arrested and charged with creating and selling spyware, triggering a global law enforcement operation. As a...

Critical SonicWall Flaw Allows SQL injection

Critical SonicWall Flaw Allows SQL injection

July 25, 2022
0

A critical SQL injection (SQLi) vulnerability was recently patched by the network security company SonicWall as a result of a...

Entrust Hacked – Attackers Stole Data From Internal Systems

Entrust Hacked – Attackers Stole Data From Internal Systems

July 25, 2022
0

Entrust, a big name in digital security, announced recently on its website that it has been attacked by hackers. During...

Load More
  • Trending
  • Comments
  • Latest
Brave browser’s Tor mode exposed users’ dark web activity

Brave browser’s Tor mode exposed users’ dark web activity

February 18, 2022
This Week in Fintech: TFT Bi-Weekly News Roundup 08/02

This Week in Fintech: TFT Bi-Weekly News Roundup 15/03

March 15, 2022
QNAP Escalation Vulnerability Let Attackers Gain Administrator Privileges

QNAP Escalation Vulnerability Let Attackers Gain Administrator Privileges

March 15, 2022
A first look at threat intelligence and threat hunting tools

A first look at threat intelligence and threat hunting tools

March 15, 2022
Beware! Facebook accounts being hijacked via Messenger prize phishing chats

Beware! Facebook accounts being hijacked via Messenger prize phishing chats

0
Shoulder surfing: Watch out for eagle‑eyed snoopers peeking at your phone

Shoulder surfing: Watch out for eagle‑eyed snoopers peeking at your phone

0
Remote work causing security issues for system and IT administrators

Remote work causing security issues for system and IT administrators

0
Elementor WordPress plugin has a gaping security hole – update now – Naked Security

Elementor WordPress plugin has a gaping security hole – update now – Naked Security

0
U.S. Gov Offers $5M Reward For North Korean Cybercrime Intel

How Three Ransomware Groups Targeted One Vulnerable Network

August 11, 2022
High-Severity Flaw in Argo CD is Information Leak Risk

Organizations Warned of Critical Vulnerabilities in NetModule Routers

August 11, 2022
Join the SD-WAN webinar: How to Extend Network Visibility and Optimize the SaaS Experience

Join the SD-WAN webinar: How to Extend Network Visibility and Optimize the SaaS Experience

August 11, 2022
Makulu Linux Shift makes shifting between desktop layouts easy

Makulu Linux Shift makes shifting between desktop layouts easy

August 10, 2022

Recent Posts

U.S. Gov Offers $5M Reward For North Korean Cybercrime Intel

How Three Ransomware Groups Targeted One Vulnerable Network

August 11, 2022
High-Severity Flaw in Argo CD is Information Leak Risk

Organizations Warned of Critical Vulnerabilities in NetModule Routers

August 11, 2022
Join the SD-WAN webinar: How to Extend Network Visibility and Optimize the SaaS Experience

Join the SD-WAN webinar: How to Extend Network Visibility and Optimize the SaaS Experience

August 11, 2022

Categories

  • Cyber Threats
  • Cybersecurity
  • Fintech
  • Hacking
  • Internet Of Things
  • Malware
  • Networking
  • Protection

Tags

Access Android attack Attacks banking BiWeekly bug Cisco critical Cyber Cybersecurity Data devices Digital exploited financial Finds Fintech Flaw flaws Google Group Hackers Krebs Latest malware Microsoft million Network News open Payments phishing Ransomware RoundUp security Software TFT Threat Top vulnerability warns Week Windows zeroday

© 2022 Lets Ask Binu All Rights Reserved

No Result
View All Result
  • Home
  • Cybersecurity
  • Cyber Threats
  • Hacking
  • Protection
  • Networking
  • Malware
  • Fintech
  • Internet Of Things

© 2022 Lets Ask Binu All Rights Reserved