logo

Exploit Attempts Recorded Against New MOVEit Transfer Vulnerability - Patch ASAP!

ID: 990903e1-dd2c-51b0-802b-2d9eb684bc86

STIX ID: report--990903e1-dd2c-51b0-802b-2d9eb684bc86

Feed Name: The Hacker News

Threat Score
78/100

Date Published: 2024-06-26

Date Updated: 2026-05-08

Author: [email protected] (The Hacker News)

...
...

A critical authentication-bypass vulnerability (CVE-2024-5806, CVSS 9.1) affecting Progress MOVEit Transfer — along with a related MOVEit Gateway issue (CVE-2024-5805) — has been disclosed and is already seeing exploitation attempts; successful exploitation can bypass SFTP authentication and impersonate users, and there are roughly 2,700 publicly reachable MOVEit instances, so organizations are urged to apply vendor patches and network mitigations immediately.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.