Vulnerability Details CVE-2024-5806
Improper Authentication vulnerability in Progress MOVEit Transfer (SFTP module) can lead to Authentication Bypass.This issue affects MOVEit Transfer: from 2023.0.0 before 2023.0.11, from 2023.1.0 before 2023.1.6, from 2024.0.0 before 2024.0.2.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.908
EPSS Ranking 99.6%
CVSS Severity
CVSS v3 Score 9.1
Products affected by CVE-2024-5806
-
cpe:2.3:a:progress:moveit_transfer:2023.0.0
-
cpe:2.3:a:progress:moveit_transfer:2023.0.1
-
cpe:2.3:a:progress:moveit_transfer:2023.0.10
-
cpe:2.3:a:progress:moveit_transfer:2023.0.2
-
cpe:2.3:a:progress:moveit_transfer:2023.0.3
-
cpe:2.3:a:progress:moveit_transfer:2023.0.4
-
cpe:2.3:a:progress:moveit_transfer:2023.0.6
-
cpe:2.3:a:progress:moveit_transfer:2023.0.7
-
cpe:2.3:a:progress:moveit_transfer:2023.0.8
-
cpe:2.3:a:progress:moveit_transfer:2023.0.9
-
cpe:2.3:a:progress:moveit_transfer:2023.1.0
-
cpe:2.3:a:progress:moveit_transfer:2023.1.1
-
cpe:2.3:a:progress:moveit_transfer:2023.1.2
-
cpe:2.3:a:progress:moveit_transfer:2023.1.3
-
cpe:2.3:a:progress:moveit_transfer:2023.1.4
-
cpe:2.3:a:progress:moveit_transfer:2023.1.5
-
cpe:2.3:a:progress:moveit_transfer:2024.0.0