THREAT OPS › CVEs › CVE-2023-0669
CVE-2023-0669 — Fortra GoAnywhere MFT Remote Code Execution Vulnerability
Fortra (formerly, HelpSystems) GoAnywhere MFT contains a pre-authentication remote code execution vulnerability in the License Response Servlet due to deserializing an attacker-controlled object.
Vulnerability details
- Affected productsGoAnywhere MFT
- KEV remediation due2023-03-03
Related reporting
- Supply Chain Attacks in 2026: Why Threat Intelligence Is the Only Early Warning System That Workscyble
- [NVD] CVE-2023-0669 (HIGH 7.2) — Fortra (formerly, HelpSystems) GoAnywhere MFT suffers from a pre-authentication command injection vulnerability in the License Response Servlet due to deserializing an arbitrary attacker-controlled object. This issue was patched in version 7.1.2.nvd