ZeroHour

CVE-2024-0204

CVSS 3.1
9.8 critical
EPSS
95%p100
Published
()
Modified
Description

Authentication bypass in Fortra's GoAnywhere MFT prior to 7.4.1 allows an unauthorized user to create an admin user via the administration portal.

Vendors
fortra
Products
goanywhere managed file transfer
Weakness
CWE-425
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news