CVE-2023-36933
- EPSS 19.16%
- Veröffentlicht 05.07.2023 16:15:09
- Zuletzt bearbeitet 21.11.2024 08:10:56
In Progress MOVEit Transfer before 2021.0.9 (13.0.9), 2021.1.7 (13.1.7), 2022.0.7 (14.0.7), 2022.1.8 (14.1.8), and 2023.0.4 (15.0.4), it is possible for an attacker to invoke a method that results in an unhandled exception. Triggering this workflow c...
CVE-2023-36934
- EPSS 92.42%
- Veröffentlicht 05.07.2023 16:15:09
- Zuletzt bearbeitet 21.11.2024 08:10:57
In Progress MOVEit Transfer before 2020.1.11 (12.1.11), 2021.0.9 (13.0.9), 2021.1.7 (13.1.7), 2022.0.7 (14.0.7), 2022.1.8 (14.1.8), and 2023.0.4 (15.0.4), a SQL injection vulnerability has been identified in the MOVEit Transfer web application that c...
CVE-2023-36932
- EPSS 21.67%
- Veröffentlicht 05.07.2023 16:15:09
- Zuletzt bearbeitet 21.11.2024 08:10:56
In Progress MOVEit Transfer before 2020.1.11 (12.1.11), 2021.0.9 (13.0.9), 2021.1.7 (13.1.7), 2022.0.7 (14.0.7), 2022.1.8 (14.1.8), and 2023.0.4 (15.0.4), multiple SQL injection vulnerabilities have been identified in the MOVEit Transfer web applicat...
CVE-2023-35708
- EPSS 21.97%
- Veröffentlicht 16.06.2023 04:15:14
- Zuletzt bearbeitet 21.11.2024 08:08:32
In Progress MOVEit Transfer before 2021.0.8 (13.0.8), 2021.1.6 (13.1.6), 2022.0.6 (14.0.6), 2022.1.7 (14.1.7), and 2023.0.3 (15.0.3), a SQL injection vulnerability has been identified in the MOVEit Transfer web application that could allow an unauthe...
CVE-2023-35036
- EPSS 25.72%
- Veröffentlicht 12.06.2023 03:15:09
- Zuletzt bearbeitet 03.01.2025 19:15:10
In Progress MOVEit Transfer before 2021.0.7 (13.0.7), 2021.1.5 (13.1.5), 2022.0.5 (14.0.5), 2022.1.6 (14.1.6), and 2023.0.2 (15.0.2), SQL injection vulnerabilities have been found in the MOVEit Transfer web application that could allow an unauthentic...
CVE-2023-34362
- EPSS 94.31%
- Veröffentlicht 02.06.2023 14:15:09
- Zuletzt bearbeitet 20.12.2024 17:49:01
In Progress MOVEit Transfer before 2021.0.6 (13.0.6), 2021.1.4 (13.1.4), 2022.0.4 (14.0.4), 2022.1.5 (14.1.5), and 2023.0.1 (15.0.1), a SQL injection vulnerability has been found in the MOVEit Transfer web application that could allow an unauthentica...
CVE-2021-38159
- EPSS 3.42%
- Veröffentlicht 07.08.2021 17:15:07
- Zuletzt bearbeitet 21.11.2024 06:16:31
In certain Progress MOVEit Transfer versions before 2021.0.4 (aka 13.0.4), SQL injection in the MOVEit Transfer web application could allow an unauthenticated remote attacker to gain access to the database. Depending on the database engine being used...
CVE-2021-37614
- EPSS 0.17%
- Veröffentlicht 05.08.2021 20:15:09
- Zuletzt bearbeitet 21.11.2024 06:15:31
In certain Progress MOVEit Transfer versions before 2021.0.3 (aka 13.0.3), SQL injection in the MOVEit Transfer web application could allow an authenticated remote attacker to gain access to the database. Depending on the database engine being used (...
CVE-2021-33894
- EPSS 1.62%
- Veröffentlicht 09.06.2021 19:15:09
- Zuletzt bearbeitet 21.11.2024 06:09:43
In Progress MOVEit Transfer before 2019.0.6 (11.0.6), 2019.1.x before 2019.1.5 (11.1.5), 2019.2.x before 2019.2.2 (11.2.2), 2020.x before 2020.0.5 (12.0.5), 2020.1.x before 2020.1.4 (12.1.4), and 2021.x before 2021.0.1 (13.0.1), a SQL injection vulne...
CVE-2021-31827
- EPSS 0.08%
- Veröffentlicht 18.05.2021 12:15:07
- Zuletzt bearbeitet 21.11.2024 06:06:18
In Progress MOVEit Transfer before 2021.0 (13.0), a SQL injection vulnerability has been found in the MOVEit Transfer web app that could allow an authenticated attacker to gain unauthorized access to MOVEit Transfer's database. Depending on the datab...