یادآوری: اطلاعات این سامانه از منابع معرفی‌شده گردآوری می‌شود. پیش از هر اقدام فنی، جزئیات را در منبع اصلی بررسی کنید.
کم اولویت 15/100

Unable to manage, create ZIP or back up files uploaded by PHP scripts in Plesk: Unable to get the object security info: (5) Access is denied

Product issues: #PPP-49179 "The outdated PHP handlers (versions 5.6 and 7.0) no longer contain custom upload_tmp_dir as their values."

انتشار: 2023-02-13 10:18 آخرین مشاهده داده: 2026-09-10 11:30 1 منبع · 1 رسمیاعتماد متوسط · 53/100
اولویت VulnWatch 15/100 ترکیب سیگنال‌های ریسک موجود
CVSS / EPSS — / — شدت فنی / احتمال بهره‌برداری
کیفیت داده 56/100 نیازمند توجه · اعتماد متوسط
تازگی داده قدیمی قدیمی‌تر از ۳۰ روز · 1 منبع
راهنمای اقدام

الان چه کاری باید انجام شود؟

پایش و ارزیابی
کیفیت داده 56/100نیازمند توجه · 1 منبع؛ پیش از تغییر Production منبع اصلی را بررسی کنید.
راهکارراهکار در این صفحه ثبت شده است؛ بخش راهکار پیشنهادی را بررسی کنید.
رفتن به راهکار این راهنمای اقدام، RiskScorer را تغییر نمی‌دهد و جایگزین ارزیابی محیط شما نیست.
اولویت عملیاتی 2.5

چرا این مورد باید بررسی شود؟

این امتیاز مستقل از RiskScorer است و برای مرتب‌سازی اقدام‌های عملیاتی استفاده می‌شود.

Priority15
راهکار اجرایی موجودتغییر مهم: آسیب‌پذیری جدید
01

خلاصه آسیب‌پذیری

Product issues: #PPP-49179 "The outdated PHP handlers (versions 5.6 and 7.0) no longer contain custom upload_tmp_dir as their values."
02

توضیحات کامل

Applicable to: Plesk for Windows Symptoms It is not possible to upload, edit or change the permissions of files, or rename them, in Plesk at Domains > example.com > File Manager or download file by FTP under the user account. The following error appears: PLESK_ERROR: Internal error: filemng failed: Unable to get the object (C:\Inetpub\vhosts\example.com\httpdocs\test.html) security info: (5) Access is denied. at execute "C:\Program Files (x86)\Plesk\admin\bin\filemng.exe" user --permissions --list-common "--file=C:\Inetpub\vhosts\example.com\httpdocs\test.html" "--accounts=tmp54B2.tmp"(RunTime::RunAsUser::run line 221) (Error code 1) A backup of a website based on WordPress finishes with the warning: CONFIG_TEXT: Warning: domain "example.com" Unable to get attributes of the file C:\Inetpub\vhosts\example.com\httpdocs\wp-content\uploads\2018\07\12.png: Access is denied. The file will not be archived. [:121566464] When trying to Add Files to Archive from Domains > example.com > File Manager, the following error is shown making reference to all the files that were uploaded via PHP: PLESK_ERROR: Unable to create the archive: 7-zip 18.05 (x86): Copyright (c) 1999-2018 Igor Pavlov: 2018-04-30 Scanning the drive: 1913 folders, 10397 files, 258441467 bytes (247 MiB) Creating archive: C:\Inetpub\vhosts\example.com\httpdocs\backup.zip Add new data to archive: 1913 folders, 10397 files, 258441467 bytes (247 MiB) WARNING: Access is denied. wp-content\uploads\2019\04\01.png: Access is denied. ... Cause Product issues: #PPP-49179 "The outdated PHP handlers (versions 5.6 and 7.0) no longer contain custom upload_tmp_dir as their values." Fixed in: Plesk Obsidian 23 June 2020 (Windows) #PPPM-4539 "Files uploaded via WordPress are now assigned the correct file system permissions." Fixed in: Plesk Obsidian 21 January 2020 (Windows) Resolution Upgrade the Plesk server to the next release, make sure that FastCGI Settings are enabled in the domain PHP Settings: Note: Check how to enable the FastCGI settings per Service Plan Log in to Plesk GUI Go to Domains > example.com > PHP Settings > Select a PHP version handled by FastCGI > Scroll down to FastCGI Settings > Set the option Enable FastCGI Settings to On > Click OK to apply the changes Workaround Fixing permissions in order to access files via Plesk File Manager / FTP Connect to the server via RDP Start a command prompt as an Administrator Run the command: C:\> plesk bin repair --repair-webspace-security -webspace-name example.com -all-filesystem-objects Fixing permissions before creating a manual server Plesk backup Connect to the server via RDP Start a command prompt as an Administrator Fix file permissions: For one domain C:\> plesk bin repair --repair-webspace-security -webspace-name example.com -all-filesystem-objects For all domains C:\> for /f %i in ('plesk bin subscription -l') do plesk bin repair --repair-webspace-security -webspace-name %i -all-filesystem-objects Create a full Plesk backup. Fixing permissions before creating scheduled server Plesk backups Warning: The following workaround must be applied every time after applying the changes at Tools & Settings > Backup Manager > Schedule, because the task is overwritten. Log in to Plesk GUI and schedule a full server backup: 1.1. Go to at Tools & Settings > Backup Manager > Schedule > 1.2. Enable Activate this backup task. 1.3. Disable Use incremental backup. 1.4. Click OK. Connect to the server via RDP Start a command prompt as an Administrator Run the following command to create a script that will automatically fix file permissions: C:\> echo for /f %%i in ('plesk bin subscription -l') do plesk bin repair --repair-webspace-security -webspace-name %%i -all-filesystem-objects > C:\pleskrepair.cmd Create a new task: 5.1. Start Task Scheduler. 5.2. Expand Task Scheduler Library and select the task Plesk Scheduler Task #Domain Backup Scheduler 1. 5.3. Click Properties on the right. On the General tab, set Configure for to the latest task type available: Switch to the Actions tab and click New.... Configure the task: 8.1. Set Action as Start a program. 8.2. In the Program/script field, specify the location of the script created on step 4 - C:\pleskrepair.cmd. 8.3. Click OK. Increase the priority of the script task, so it will run before server backup task: 9.1. Select the new action. 9.2. Click the button. 9.3. Click OK.
✓

راهکار پیشنهادی برای رفع

اقدام پیشنهادی
Upgrade the Plesk server to the next release, make sure that FastCGI Settings are enabled in the domain PHP Settings:
این دستورها از اطلاعات منبع ثبت‌شده استخراج شده‌اند. پیش از اجرا، منبع اصلی، نسخه محصول و شرایط محیط خود را بررسی کنید.
دستور رسمی 2
Plesk Security · رسمی · SHELL
#PPP-49179 "The outdated PHP handlers (versions 5.6 and 7.0) no longer contain custom upload_tmp_dir as their values."
مشاهده منبع ↗
دستور رسمی 3
Plesk Security · رسمی · BASH
Plesk Obsidian 23 June 2020 (Windows)
مشاهده منبع ↗
دستور رسمی 4
Plesk Security · رسمی · BASH
#PPPM-4539 "Files uploaded via WordPress are now assigned the correct file system permissions."
مشاهده منبع ↗
دستور رسمی 5
Plesk Security · رسمی · BASH
Plesk Obsidian 21 January 2020 (Windows)
مشاهده منبع ↗
↺

تاریخچه تغییرات معنادار

فقط تغییرات امنیتی مهم مثل KEV، افزایش شدت/CVSS/EPSS، نسخه‌های درگیر و راهکار ثبت می‌شوند.
آسیب‌پذیری جدید

اطلاعیه امنیتی جدید ثبت شد.

new_advisory
◎

اعتماد، تازگی و پوشش داده

این شاخص عملیاتی از پوشش منابع، کامل‌بودن رکورد، تازگی داده و اختلاف بین منابع ساخته می‌شود و تضمین صحت نیست.
53/100
اعتماد متوسط اعتماد داده 56/100 نیازمند توجه داده قدیمی وضعیت تازگی قدیمی‌تر از ۳۰ روز تازگی مشاهده 75/100 کامل‌بودن · مناسب 52/100 پوشش منابع 1 منبع مرتبط 1 رسمی · 1 سطح ۱ 0 اختلاف بین منابع 2 خلأ کیفیت
Plesk Security رسمی
CVSS
—
شدت
low
محصول
Plesk / Plesk
نسخه درگیر
—
نسخه اصلاح‌شده
—
تاریخ انتشار منبع
2023-02-13
⌁

منبع هر داده

برای فیلدهای اصلی می‌توانید ببینید هر مقدار از کدام منبع ثبت شده است. اختلاف بین منابع پنهان نمی‌شود.
توضیحات 1 منبع
Plesk Securityرسمی
Applicable to: Plesk for Windows Symptoms It is not possible to upload, edit or change the permissions of files, or rename them, in Plesk at Domains > example.com > File Manager or download file by FTP under the user account. The following error appears: PLESK_ERROR: Internal error: filemng failed: Unable to get the object (C:\Inetpub\vhosts\example.com\httpdocs\test.html) security info: (5) A...
منبع ↗
اثر 1 منبع
Plesk Securityرسمی
Product issues: #PPP-49179 "The outdated PHP handlers (versions 5.6 and 7.0) no longer contain custom upload_tmp_dir as their values."
منبع ↗
راهکار 1 منبع
Plesk Securityرسمی
Upgrade the Plesk server to the next release, make sure that FastCGI Settings are enabled in the domain PHP Settings:
منبع ↗
شدت 1 منبع
Plesk Securityرسمی
low
منبع ↗
خلاصه 1 منبع
Plesk Securityرسمی
Product issues: #PPP-49179 "The outdated PHP handlers (versions 5.6 and 7.0) no longer contain custom upload_tmp_dir as their values."
منبع ↗
عنوان 1 منبع
Plesk Securityرسمی
Unable to manage, create ZIP or back up files uploaded by PHP scripts in Plesk: Unable to get the object security info: (5) Access is denied
منبع ↗
↗

منابع و مراجع