First published: Fri Dec 13 2024(Updated: )
An information-disclosure vulnerability exists in Fortra's GoAnywhere MFT application prior to version 7.7.0 that allows external access to the resources in certain admin root folders.
Credit: df4dee71-de3a-4139-9588-11b62fe6c0ff
Affected Software | Affected Version | How to fix |
---|---|---|
HelpSystems GoAnywhere Managed File Transfer | <7.7.0 |
Upgrade to GoAnywhere 7.7.0 or higher.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-9945 is classified as an information disclosure vulnerability that poses a risk of unauthorized access to sensitive resources.
To fix CVE-2024-9945, update the Fortra GoAnywhere MFT application to version 7.7.0 or later.
CVE-2024-9945 affects Fortra GoAnywhere MFT versions prior to 7.7.0.
CVE-2024-9945 can lead to external access to resources located in certain admin root folders.
Users of Fortra GoAnywhere MFT are responsible for implementing the necessary updates to mitigate CVE-2024-9945.