Exploit Attempts Recorded Against New MOVEit Transfer Vulnerability - Patch ASAP!
ID: 990903e1-dd2c-51b0-802b-2d9eb684bc86
STIX ID: report--990903e1-dd2c-51b0-802b-2d9eb684bc86
Feed Name: The Hacker News
Threat Score
A critical authentication-bypass vulnerability (CVE-2024-5806, CVSS 9.1) affecting Progress MOVEit Transfer — along with a related MOVEit Gateway issue (CVE-2024-5805) — has been disclosed and is already seeing exploitation attempts; successful exploitation can bypass SFTP authentication and impersonate users, and there are roughly 2,700 publicly reachable MOVEit instances, so organizations are urged to apply vendor patches and network mitigations immediately.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
