跳转到帖子

Progress MOVEit Transfer Critical Vulnerability (CVE-2023-34362): Privilege Escalation and Unauthorized Access (Remote)

recommended_posts

发布于
  • Members

Progress MOVEit Transfer Critical Vulnerability (CVE-2023-34362): Privilege Escalation and Unauthorized Access (Remote)

Severity
10
CVSS
(AV:N/AC:L/Au:N/C:C/I:C/A:C)
Published
05/31/2023
Created
06/07/2023
Added
06/07/2023
Modified
10/31/2024

Description

Progress has discovered a vulnerability in MOVEit Transfer that could lead to escalated privileges and potential unauthorized access to the environment. This check remotely interacts with the MOVEit Transfer API to detect versions to assess vulnerability.

Solution(s)

  • progress-moveit-transfer-critical-may-2023

References

  • https://attackerkb.com/topics/cve-2023-34362
  • CVE - 2023-34362
  • https://community.progress.com/s/article/MOVEit-Transfer-Critical-Vulnerability-31May2023
  • https://www.rapid7.com/blog/post/2023/06/01/rapid7-observed-exploitation-of-critical-moveit-transfer-vulnerability/
  • 查看数 700
  • 已创建
  • 最后回复

参与讨论

你可立刻发布并稍后注册。 如果你有帐户,立刻登录发布帖子。
注意:你的帖子需要版主批准后才能看到。

游客
回帖…