"Urgent Patch Required: Fortra GoAnywhere MFT Vulnerability Exploited"

1 min read
Source: BleepingComputer
"Urgent Patch Required: Fortra GoAnywhere MFT Vulnerability Exploited"
Photo: BleepingComputer
TL;DR Summary

Fortra warns of a critical authentication bypass vulnerability, CVE-2024-0204, in GoAnywhere MFT versions before 7.4.1, allowing unauthorized creation of admin users. The flaw, discovered in December 2023, could lead to device takeover and data breaches. Fortra advises immediate patching to version 7.4.1 and provides manual mitigation steps. While no active exploitation has been reported, the potential for PoC exploits exists. This follows a previous incident where the Clop ransomware gang exploited a different flaw in GoAnywhere MFT, causing widespread data theft attacks on numerous organizations.

Share this article

Reading Insights

Total Reads

0

Unique Readers

1

Time Saved

2 min

vs 3 min read

Condensed

81%

45885 words

Want the full story? Read the original article

Read on BleepingComputer