First published: Sat May 07 2016(Updated: )
The Accellion File Transfer Appliance (FTA) before FTA_9_12_40 allows local users to add an SSH key to an arbitrary group, and consequently gain privileges, via unspecified vectors.
Credit: cret@cert.org
Affected Software | Affected Version | How to fix |
---|---|---|
Accellion Secure File Transfer Appliance | <=9_11_210 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-2353 has a high severity rating due to the potential for privilege escalation.
To fix CVE-2016-2353, upgrade to Accellion File Transfer Appliance version 9_12_40 or later.
CVE-2016-2353 is associated with local privilege escalation vulnerabilities.
CVE-2016-2353 affects local users of Accellion File Transfer Appliance versions up to 9_11_210.
Exploiting CVE-2016-2353 can allow unauthorized users to add an SSH key and gain elevated privileges.