THREATOPS
THREAT OPSThreat News › [NVD] CVE-2023-0669 (HIGH 7.2) — Fortra (formerly, HelpSystems) GoAnywhere MFT suffers from a pre-authentication command injection vulnerability in the License Response Servlet due to deserializing an arbitrary attacker-controlled object. This issue was patched in version 7.1.2.

[NVD] CVE-2023-0669 (HIGH 7.2) — Fortra (formerly, HelpSystems) GoAnywhere MFT suffers from a pre-authentication command injection vulnerability in the License Response Servlet due to deserializing an arbitrary attacker-controlled object. This issue was patched in version 7.1.2.

lownvdPublished 2023-02-06

CVE-2023-0669 CVSS: 7.2 HIGH Published: 2023-02-06T20:15:14.300

Fortra (formerly, HelpSystems) GoAnywhere MFT suffers from a pre-authentication command injection vulnerability in the License Response Servlet due to deserializing an arbitrary attacker-controlled object. This issue was patched in version 7.1.2.

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2023-0669