Vulnerability PFSI-62465 in Plesk

Follow

Comments

14 comments

  • Avatar
    Michel vd Lingen

    Thank you for this. A lot of customers refuse to migrate to newer systems. So thank you for not leaving them in the dark.
    We will urge them once again to migrate. Not only because of the risks, but also because of better support (Plesk) and more features like higher PHP versions.

    1
    Comment actions Permalink
  • Avatar
    Rocksalt International Pty Ltd

    When I try to apply the patch (plesk-17.8.zip) to plesk windows with version 17.8.11 Update #53.

    I got the error:

    The file D:\Program Files (x86)\Parallels\Plesk\admin\htdocs\application.php is part of Plesk distribution. It cannot be run outside of Plesk environment.

    Could you please check?

     

    0
    Comment actions Permalink
  • Avatar
    Harald Littschwager

    Same error with linux

    Ubuntu 14.04.6 LTS
    Plesk Onyx Version 17.8.11 Update #53

    The file /opt/psa/admin/htdocs/application.php is part of Plesk distribution. It cannot be run outside of Plesk environment

    0
    Comment actions Permalink
  • Avatar
    Henrique Murta

    Same error here:


    Product version: Plesk Onyx 17.8.11 Update #53
    Update date: 2021/11/11 23:26
    Build date: 2019/04/26 03:53
    OS version: Ubuntu 14.04

    I tried to apply the update like @Leonid Gukhman said but my Plesk stayed in same version, look: 

    You already have the latest version of product(s) and all the selected components
    installed. Installation will not continue.

    0
    Comment actions Permalink
  • Avatar
    Leonid Gukhman

    Hi @Henrique Murta. Ubuntu 14.04 has reached its EOL; please consider migrating to a supported OS.

    0
    Comment actions Permalink
  • Avatar
    Guillaume HAUTBOIS

    Hi,

    I applied the security patch.

    When i go in a subscription I got the error : "The file /opt/psa/admin/htdocs/application.php is part of Plesk distribution. It cannot be run outside of Plesk environment.".

    Here are the details :

    OS : ‪Ubuntu 14.04.6 LTS‬

    Produit : Plesk Onyx
    Version 17.8.11 Mise à jour n° 53, dernière mise à jour le 5 Fév 2022 06:26

    0
    Comment actions Permalink
  • Avatar
    Holger Groß

    Hi,

    same problem here:

    OS: Ubuntu 14.04.6 LTS‬
    Plesk Onyx Version 17.8.11 Update #53

    "The file /opt/psa/admin/htdocs/application.php is part of Plesk distribution. It cannot be run outside of Plesk environment."

    All following actions were without any effect:
    - "plesk bin extension --disable traffic-monitor"
    - "plesk installer update"
    - "plesk installer update --repatch"
    - "plask repair installation"

    Any ideas or suggestions?

    @Leonid: OS-Update is no option ... ;)

    Thank you!

     

    0
    Comment actions Permalink
  • Avatar
    Leonid Gukhman

    To everyone that applied the patch on a EOLed OS: please restore the file SiteRenderer.php from a backup for now.

    We will check if anything can be done to properly apply patch for your installations and update you on Wednesday. I have also added the corresponding warning to the article.

    0
    Comment actions Permalink
  • Avatar
    Holger Groß

    THANK YOU!

    It work's

    0
    Comment actions Permalink
  • Avatar
    Stefan Holz

    Hi,

    are there any updates if the patch can be applied to older versions, that do not have the latest microupdates installed?

    Thank you

    0
    Comment actions Permalink
  • Avatar
    Leonid Gukhman

    Warning! This has not been tested, but should work on Plesk Onyx installations with microupdates up to 58 installed:

    https://plesk.zendesk.com/hc/article_attachments/7646425586962/plesk.17.8.before.MU58.php.zip

    Please let us know the results.

    0
    Comment actions Permalink
  • Avatar
    Harald Littschwager

    Seems to work, no unwanted side effects so far...

    Ubuntu 14.04.6 LTS
    Plesk Onyx Version 17.8.11 Update #53
       
    0
    Comment actions Permalink
  • Avatar
    Stefan Holz

    Looks good to me too so far.

     

    Ubuntu 14.04.6 LTS - Plesk Onyx Version 17.8.11 Update #53

    0
    Comment actions Permalink

Please sign in to leave a comment.

Have more questions? Submit a request