Authentication Bypass in Fortra’s GoAnywhere MFT (CVE-2024-0204)

Severity: High
Summary#

Invicti detected Authentication Bypass vulnerability.

The GoAnywhere MFT has an authentication bypass vulnerability.

An attacker can create an admin user through an unauthorized administration portal.

 

Impact#

An unauthenticated attacker can create an admin user.

Remediation#

Upgrade to the latest version of GoAnywhere MFT.

Build your resistance to threats. And save hundreds of hours each month.

Get a demo See how it works