First published: Sun Aug 20 2023(Updated: )
TerraMaster NAS through 4.2.30 allows remote WAN attackers to execute arbitrary code as root via the raidtype and diskstring parameters for PHP Object Instantiation to the api.php?mobile/createRaid URI. (Shell metacharacters can be placed in raidtype because popen is used without any sanitization.) The credentials from CVE-2022-24990 exploitation can be used.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Terra-master Terramaster Operating System | <4.2.31 | |
Terra-master F2-210 | ||
Terra-master F2-221 | ||
Terra-master F2-223 | ||
Terra-master F2-422 | ||
Terra-master F2-423 | ||
Terra-master F4-421 | ||
Terra-master F4-422 | ||
Terra-master F4-423 | ||
Terra-master F5-221 | ||
Terra-master F5-422 | ||
Terra-master T12-423 | ||
Terra-master T12-450 | ||
Terra-master T6-423 | ||
Terra-master T9-423 | ||
Terra-master T9-450 | ||
Terra-master U12-322-9100 | ||
Terra-master U12-423 | ||
Terra-master U12-722-2224 | ||
Terra-master U16-322-9100 | ||
Terra-master U16-722-2224 | ||
Terra-master U24-722-2224 | ||
Terra-master U4-111 | ||
Terra-master U4-211 | ||
Terra-master U4-423 | ||
Terra-master U8-111 | ||
Terra-master U8-322-9100 | ||
Terra-master U8-423 | ||
Terra-master U8-522-9400 | ||
Terra-master U8-722-2224 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2022-24989 is critical, with a severity value of 9.8.
Remote WAN attackers can exploit CVE-2022-24989 by executing arbitrary code as root via the raidtype and diskstring parameters for PHP Object Instantiation to the api.php?mobile/createRaid URI.
Yes, TerraMaster NAS through version 4.2.31 is affected by CVE-2022-24989.
No, TerraMaster F2-210 is not vulnerable to CVE-2022-24989.
You can find more information about CVE-2022-24989 at the following references: [Reference 1](https://attackerkb.com/topics/h8YKVKx21t/cve-2022-24990), [Reference 2](https://forum.terra-master.com/en/viewforum.php?f=28), [Reference 3](https://github.com/0xf4n9x/CVE-2022-24990).