vulnerability
GoAnywhere MFT: Remote code injection via admin panel (CVE-2023-0669)
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
9 | (AV:N/AC:L/Au:N/C:P/I:P/A:P) | Feb 3, 2023 | Feb 6, 2023 | Jun 6, 2023 |
Severity
9
CVSS
(AV:N/AC:L/Au:N/C:P/I:P/A:P)
Published
Feb 3, 2023
Added
Feb 6, 2023
Modified
Jun 6, 2023
Description
A Zero-Day Remote Code Injection exploit was identified in GoAnywhere MFT. The attack vector of this exploit requires access to the administrative console of the application.
Solution
goanywhere-cve-2023-0669-remote-code-injection

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.