MOVEit Transfer Critical Privilege Escalation Vulnerability
Summary
Progress, the vendor that provides MOVEit, has disclosed a new, critical vulnerability in its MOVEit file transfer program.
Threat Type
Vulnerability
Overview
***UPDATE #1 - June 19, 2023***
Progress has released an update to their original advisory. The vulnerability has been assigned CVE-2023-35708 and a patch has been made available. See the updated advisory here for additional information.
Original Post
A new privilege escalation and unauthorized access vulnerability in Progress’ MOVEit Tran