CVE-2016-2353: High severity accellion secure file transfer appliance vulnerability
Published May 7, 2016
·Updated
The Accellion File Transfer Appliance (FTA) before FTA91240 allows local users to add an SSH key to an arbitrary group, and consequently gain privileges, via unspecified vectors.
Affected Software
1 affected component
Accellion File Transfer Appliance<=9_11_210
Event History
May 7, 2016
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-2353?
CVE-2016-2353 has a high severity rating due to the potential for privilege escalation.
2
How do I fix CVE-2016-2353?
To fix CVE-2016-2353, upgrade to Accellion File Transfer Appliance version 9_12_40 or later.
3
What types of vulnerabilities are associated with CVE-2016-2353?
CVE-2016-2353 is associated with local privilege escalation vulnerabilities.
4
Who is affected by CVE-2016-2353?
CVE-2016-2353 affects local users of Accellion File Transfer Appliance versions up to 9_11_210.
5
What is the impact of exploiting CVE-2016-2353?
Exploiting CVE-2016-2353 can allow unauthorized users to add an SSH key and gain elevated privileges.