View this email in your browser
You are receiving this email because of your relationship with ASUSTOR Inc. If you do not wish to receive any more emails, you can unsubscribe here.
marketing@asustor.com
2025 年 8 月 ASUSTOR 电子报 第 254 
本期焦点

计算机操作系统更新带来 SSD 故障危机?定期备份到 ASUSTOR NAS 保障数据安全

近期计算机操作系统更新的灾情频传! 部分计算机用户在对 NVMe SSD 及 HDD 进行大量写入操作(特别是连续写入接近 50GB,或硬盘容量使用超过 60% 时),发现硬盘会从系统中消失,即便重新启动后硬盘会再度显示,但只要继续传输大档案,就会再次发生故障。此Bug 不但可能导致档案损毁,对 SSD 而言更是致命,因为反复尝试传输会加速耗损 SSD 的写入寿命。

 

ASUSTOR 再次提醒大家养成定期备份的好习惯!

Windows用户:
安装 Backup Plan 应用程序到本机,可选择单一、排程或同步备份,将 Windows PC 的数据备份到 ASUSTOR NAS。当发生意外导致原始数据损毁,也可立即将数据还原至原始位置,将伤害降至最低。

在 Windows 系统上建立备份计划: https://www.asustor.com/online/College_topic?topic=253

MAC 用户:
透过 macOS 内建的 Time Machine 应用程序,可将 Mac 完整备份至 ASUSTOR NAS 上。支持多台 Mac 同时备份,每台 Mac 皆有独立账号与存放位置,确保备份独立与个人隐私安全。

在 macOS 系统上建立备份计划: https://www.asustor.com/online/College_topic?topic=108

Security Advisory
ABP and AES

The Windows service configuration of ABP and AES contains an unquoted ImagePath registry value vulnerability. This allows a local attacker to execute arbitrary code by placing a malicious executable in a predictable location such as "C:\Program.exe". If the service runs with elevated privileges, exploitation results in privilege escalation to SYSTEM level. This vulnerability arises from an unquoted service path affecting systems where the executable resides in a path containing spaces.
Affected products and versions include: ABP (ASUSTOR Backup Plan) 2.0.7.6130 and earlier as well as AES (ASUSTOR EZSync) 1.0.6.6133 and earlier.

  • The issue has been fixed on ABP (ASUSTOR Backup Plan) 2.0.7.6131 and AES (ASUSTOR EZSync) 1.0.6.6134.
EZ Sync Manager

An improper access control vulnerability was found in the EZ Sync Manager of ADM, which allows authenticated users to copy arbitrary files from the server file system into their own EZSync folder. The vulnerability is due to a lack of authorization checks on the file parameter of the HTTP request. Attackers can exploit this flaw to access files outside their authorized scope, provided the file has readable permissions for other users on the underlying OS. This can lead to unauthorized exposure of sensitive data.
Affected products and versions include: from ADM 4.1.0 to ADM 4.3.3.RH61 as well as ADM 5.0.0.RIN1 and earlier.

  • The issue has been fixed on ADM 5.0.0.RJG2 and ADM 4.3.3.RJH1.
ADM and Text Editor

A stored Cross-Site Scripting (XSS) vulnerability was found in the File Explorer and Text Editor of ADM. An attacker could exploit this vulnerability to inject malicious scripts into the applications, which may then access cookies or other sensitive information retained by the browser and used with the affected applications.


Affected products and versions include: from ADM 4.1.0 to ADM 4.3.3.RH61 as well as ADM 5.0.0.RIN1 and earlier, and Text Editor 1.0.0.r112 and earlier.

  • The issue has been fixed on ADM 5.0.0.RJG2 and ADM 4.3.3.RJH1.
得奖讯息
爱速特科技 AS6804T 荣获美国权威科技媒体 PC Magazine 评选为「编辑首选」
marketing@asustor.com
ASUSTOR Inc. 领先业界采用 AMD Ryzen V3C14 2.3 GHz 四核心处理器 (最高至 3.8 GHz) 做为旗舰高阶机种 AS68 NAS 系列产品,其中四磁盘槽机种 AS6804T 获得美国权威科技媒体 PC Magazine 青睐,评选为「编辑首选」。为布局未来整体攀升的数字储存量能,以及日益多元的 AI 开发与数据存取需求,ASUSTOR AS68 系列作为一款专为中小企业设计的 NAS 解决方案,以出色的多任务性能、高速连网效率、丰富的功能和灵活的扩展性,成为企业 AI 开发的理想选择。AS6804T 具备高速传输速度、高扩展性及轻松上手的特性,加上超过 200 种以上的各式 APP 软件支持,适合家庭、工作室及中小型企业储存环境,其强悍性能及高速储存为其赢得了该类别最高的「编辑首选」奖项。
marketing@asustor.com
 
 

3F, No.136, Da-Ye Rd., Beitou Dist., Taipei City 112, Taiwan


| |