Exploit released for Fortra GoAnywhere MFT auth bypass bug
ID: e429888e-4ac0-5bc7-be79-1dd6db309574
STIX ID: report--e429888e-4ac0-5bc7-be79-1dd6db309574
Feed Name: Bleeping Computer
A critical authentication bypass (CVE-2024-0204) in Fortra's GoAnywhere MFT has a public proof-of-concept that allows attackers to reach the InitialAccountSetup.xhtml endpoint and create new administrator accounts on unpatched instances; Fortra released a patch (7.4.1) and recommended temporary mitigations (delete or replace InitialAccountSetup.xhtml), but PoC availability raises a high risk of scanning and compromise, particularly given prior Clop ransomware campaigns that exploited GoAnywhere flaws.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
