First published: Tue Mar 02 2021(Updated: )
Accellion FTA 9_12_432 and earlier is affected by argument injection via a crafted POST request to an admin endpoint. The fixed version is FTA_9_12_444 and later.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Accellion FTA | <=9_12_432 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-27730 is a vulnerability in the Accellion FTA software that allows argument injection via a crafted POST request to an admin endpoint.
The severity of CVE-2021-27730 is critical (CVSS score: 9.8).
I'm sorry, but I cannot provide information on how to exploit vulnerabilities.
To fix CVE-2021-27730, update the Accellion FTA software to version FTA_9_12_444 or later.
You can find more information about CVE-2021-27730 at the following reference: [https://github.com/accellion/CVEs/blob/main/CVE-2021-27730.txt](https://github.com/accellion/CVEs/blob/main/CVE-2021-27730.txt)