跳转到帖子

Progress MOVEit Transfer: CVE-2023-36932: Multiple SQL injection vulnerabilities in MOVEit Transfer web application

recommended_posts

发布于
  • Members

Progress MOVEit Transfer: CVE-2023-36932: Multiple SQL injection vulnerabilities in MOVEit Transfer web application

Severity
8
CVSS
(AV:N/AC:L/Au:S/C:C/I:C/A:N)
Published
07/06/2023
Created
07/07/2023
Added
07/07/2023
Modified
01/30/2025

Description

Multiple SQL injection vulnerabilities have been identified in the MOVEit Transfer web application that could allow an authenticated attacker to gain unauthorized access to the MOVEit Transfer database. An attacker could submit a crafted payload to a MOVEit Transfer application endpoint which could result in modification and disclosure of MOVEit database content.

Solution(s)

  • progress-moveit-transfer-cve-2023-36932-solution

References

  • https://attackerkb.com/topics/cve-2023-36932
  • CVE - 2023-36932
  • https://community.progress.com/s/article/ka74Q000000L9ShQAK
  • 查看数 698
  • 已创建
  • 最后回复

参与讨论

你可立刻发布并稍后注册。 如果你有帐户,立刻登录发布帖子。
注意:你的帖子需要版主批准后才能看到。

游客
回帖…