CVE-2024-0396
CVSS 3.1 Score 7.1 of 10 (high)
Details
Published Jan 17, 2024
Updated: Jan 29, 2024
CWE ID 20
Summary
CVE-2024-0396 is a vulnerability affecting MOVEit Transfer versions prior to 2022.0.10 (14.0.10), 2022.1.11 (14.1.11), 2023.0.8 (15.0.8), and 2023.1.3 (15.1.3). An authenticated user can exploit an input validation issue in an HTTPS transaction, leading to computational errors within MOVEit Transfer. This vulnerability could result in a denial of service.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- Progress MOVEit File Transfer
Affected Vendors
- Ipswitch, Inc.