Critical PHP Vulnerability Exposes QNAP NAS Devices to Remote Attacks

Discussion in 'News Aggregator' started by Ravie Lakshmanan, 23 Jun 2022.

  1. QNAP, Taiwanese maker of network-attached storage (NAS) devices, on Wednesday said it's in the process of fixing a critical three-year-old PHP vulnerability that could be abused to achieve remote code execution. "A vulnerability has been reported to affect PHP versions 7.1.x below 7.1.33, 7.2.x below 7.2.24, and 7.3.x below 7.3.11 with improper nginx config," the hardware vendor said in an

    Continue reading...
     

Share This Page

Loading...