Multiple Vulnerabilities in Progress MOVEit Products Could Allow for Authentication Bypass

Multiple vulnerabilities have been discovered in MOVEit products, which could allow for authentication bypass.

  • MOVEit Gateway acts as a proxy between inbound connections from the public network and your internal trusted network.
  • MOVEit Transfer is a secure managed file transfer application.

Successful exploitation of these vulnerabilities could allow for an attacker to bypass authentication. An attacker could then view, change, or delete data; or create new accounts with full user rights.

Read more... Cyber Security Advisories - MS-ISAC