SOURCE FACT
TerraMaster · TerraMaster OS
TerraMaster OS contains a remote command execution vulnerability that allows an unauthenticated user to execute commands on the target endpoint.
Required action
Apply updates per vendor instructions.
CISA notes
https://forum.terra-master.com/en/viewtopic.php?t=3030; https://nvd.nist.gov/vuln/detail/CVE-2022-24990
View source evidence →