Source |
The Hacker News |
Identifiant |
8353388 |
Date de publication |
2023-07-07 19:31:00 (vue: 2023-07-07 15:07:10) |
Titre |
Une autre faille SQLI non authentifiée critique découverte dans le logiciel de transfert Moveit Another Critical Unauthenticated SQLi Flaw Discovered in MOVEit Transfer Software |
Texte |
Progress Software a annoncé la découverte et le correctif d'une vulnérabilité critique d'injection SQL dans le transfert Moveit, un logiciel populaire utilisé pour le transfert de fichiers sécurisé.De plus, Progress Software a corrigé deux autres vulnérabilités de haute sévérité.
La vulnérabilité d'injection SQL identifiée, étiquetée comme CVE-2023-36934, pourrait potentiellement permettre aux attaquants non authentifiés de gagner
Progress Software has announced the discovery and patching of a critical SQL injection vulnerability in MOVEit Transfer, popular software used for secure file transfer. In addition, Progress Software has patched two other high-severity vulnerabilities.
The identified SQL injection vulnerability, tagged as CVE-2023-36934, could potentially allow unauthenticated attackers to gain unauthorized |
Notes |
★★★
|
Envoyé |
Oui |
Condensat |
2023 36934 addition allow announced another attackers could critical cve discovered discovery file flaw gain has high identified injection moveit other patched patching popular potentially progress secure severity software sql sqli tagged transfer two unauthenticated unauthorized used vulnerabilities vulnerability |
Tags |
Vulnerability
Patching
|
Stories |
|
Move |
|