Description

An authentication bypass vulnerability in GoAnywhere MFT prior to 7.6.0 allows Admin Users with access to the Agent Console to circumvent some permission checks when attempting to visit other pages. This could lead to unauthorized information disclosure or modification.

INFO

Published Date :

2024-08-14T15:04:10.987Z

Last Modified :

2024-08-29T03:55:30.276Z

Source :

Fortra
AFFECTED PRODUCTS

The following products are affected by CVE-2024-25157 vulnerability.

Vendors Products
Fortra
  • Goanywhere Managed File Transfer
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2024-25157.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact