Unrated severityNVD Advisory· Published Aug 14, 2024· Updated Aug 29, 2024
Authentication bypass in GoAnywhere MFT prior to 7.6.0
CVE-2024-25157
Description
An authentication bypass vulnerability in GoAnywhere MFT prior to 7.6.0 allows Admin Users with access to the Agent Console to circumvent some permission checks when attempting to visit other pages. This could lead to unauthorized information disclosure or modification.
Affected products
2- Range: <7.6.0
- Range: 6.0.1
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.