Vulnerability Management, Patch/Configuration Management, Cloud Security

Active Exploitation of Years-old ThinkPHP, ownCloud Bugs Spike

Real Php code developing screen. Programing workflow abstract algorithm concept. Lines of Php code visible under magnifying lens.

BleepingComputer reports that attacks leveraging old critical ThinkPHP Framework and ownCloud file sharing and syncing platform vulnerabilities to facilitate arbitrary operating system command execution and data compromise have surged in recent days.

After being exploited in Chinese cyberattacks since October 2023, the ThinkPHP Framework local file inclusion flaw, tracked as CVE-2022-47945, has been targeted by 572 unique IP addresses, according to an analysis from GreyNoise.

Despite ongoing high-volume abuse, such a security issue has not yet been added to the Cybersecurity and Infrastructure Security Agency's Known Exploited Vulnerabilities catalog. On the other hand, intrusions from 484 unique IPs have been deployed against ownCloud instances impacted by the CVE-2023-49103 flaw, which stemmed from the software's dependence on a PHP environment data-leaking third-party library.

While the bug was reported by the FBI, CISA, and National Security Agency to be among the most exploited flaws in November, numerous ownCloud instances continue to be vulnerable.

An In-Depth Guide to Cloud Security

Get essential knowledge and practical strategies to fortify your cloud security.

You can skip this ad in 5 seconds

Cookies

This website uses cookies to improve your experience, provide social media features and deliver advertising offers that are relevant to you.

If you continue without changing your settings, you consent to our use of cookies in accordance with our privacy policy. You may disable cookies.