Authentication Bypass in Fortra’s GoAnywhere MFT (CVE-2024-0204)
Summary#
Invicti detected Authentication Bypass vulnerability.
The GoAnywhere MFT has an authentication bypass vulnerability.
An attacker can create an admin user through an unauthorized administration portal.
Impact#
An unauthenticated attacker can create an admin user.
Remediation#
Upgrade to the latest version of GoAnywhere MFT.