logo

Exploit released for Fortra GoAnywhere MFT auth bypass bug

ID: e429888e-4ac0-5bc7-be79-1dd6db309574

STIX ID: report--e429888e-4ac0-5bc7-be79-1dd6db309574

Feed Name: Bleeping Computer

Threat Score
75/100

Date Published: 2024-01-23

Date Updated: 2026-04-20

Author: Sergiu Gatlan

...
...

A critical authentication bypass (CVE-2024-0204) in Fortra's GoAnywhere MFT has a public proof-of-concept that allows attackers to reach the InitialAccountSetup.xhtml endpoint and create new administrator accounts on unpatched instances; Fortra released a patch (7.4.1) and recommended temporary mitigations (delete or replace InitialAccountSetup.xhtml), but PoC availability raises a high risk of scanning and compromise, particularly given prior Clop ransomware campaigns that exploited GoAnywhere flaws.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.