跳转到帖子

Progress MOVEit Transfer: CVE-2023-42660: MOVEit Transfer Machine Interface SQL Injection

recommended_posts

发布于
  • Members

Progress MOVEit Transfer: CVE-2023-42660: MOVEit Transfer Machine Interface SQL Injection

Severity
9
CVSS
(AV:N/AC:L/Au:S/C:C/I:C/A:C)
Published
09/20/2023
Created
12/14/2024
Added
12/13/2024
Modified
01/30/2025

Description

A SQL injection vulnerability has been identified in the MOVEit Transfer machine interface that could allow an authenticated attacker to gain unauthorized access to the MOVEit Transfer database. An attacker could submit a crafted payload to the MOVEit Transfer machine interface which could result in modification and disclosure of MOVEit database content.

Solution(s)

  • progress-moveit-transfer-cve-2023-42660-solution

References

  • https://attackerkb.com/topics/cve-2023-42660
  • CVE - 2023-42660
  • https://community.progress.com/s/article/ka74Q000000Cg8oQAC
  • 查看数 707
  • 已创建
  • 最后回复

参与讨论

你可立刻发布并稍后注册。 如果你有帐户,立刻登录发布帖子。
注意:你的帖子需要版主批准后才能看到。

游客
回帖…