Lucene search

K
hiveproHiveForce LabsHIVEPRO:ADD1A80B4FE3AB79E2C5389C1C0320B1
HistoryJan 25, 2024 - 12:55 p.m.

Critical GoAnywhere MFT Flaw Allows Attackers to Become Admins

2024-01-2512:55:39
HiveForce Labs
www.hivepro.com
12
authentication bypass
privilege escalation
data exfiltration
malware deployment
network attack

AI Score

7.4

Confidence

Low

EPSS

0.584

Percentile

97.8%

Summary: A critical authentication bypass vulnerability (CVE-2024-0204) in Fortra GoAnywhere MFT enables attackers to create new admin users with full privileges, potentially leading to data exfiltration, malware deployment, and further attacks within the network. Threat Level - Red | Vulnerability Report For a detailed threat advisory, download the pdf file here To receive real-time threat advisories, please follow HiveForce Labs on LinkedIn.

AI Score

7.4

Confidence

Low

EPSS

0.584

Percentile

97.8%