漏洞描述
UnRaid <=6.80 allows remote unauthenticated attackers to execute arbitrary code.
影响产品
修复建议
建议关注厂商安全公告,及时升级至已修复版本,并结合实际资产暴露情况采取缓解措施。
参考链接
sysdream.comhttps://sysdream.com/news/lab/2020-02-06-cve-2020-5847-cve-2020-5849-unraid-6-8-0-unauthenticated-remote-code-execution-as-root/↗cve.mitre.orghttps://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-5847↗sysdream.comhttps://sysdream.com/news/lab/↗forums.unraid.nethttps://forums.unraid.net/forum/7-announcements/↗github.comhttps://github.com/Ostorlab/KEV↗