Posted in Industry News by Jon on 16/06/2013 @ 12:56
We have recently received notification from the SolusVM team of a security issue within all versions their software (including beta) which we wish to share with our clients/readers.
Until a proper fix can be built/tested/released, the recommendation resolution from SolusVM is to immediately remove the file '/usr/local/solusvm/www/centralbackup.php' from any master servers which will immediately resolve the security vulnerability.
We have been advised that SolusVM have patched the vulnerability in both stable and beta builds. The update can be rolled out via the web management page or by manually issuing the following commands on the master via SSH:
Stable version: /scripts/upcp
Beta version: /scripts/upcp-beta