CVE-2023-42656
- EPSS 0.02%
- Veröffentlicht 20.09.2023 17:15:11
- Zuletzt bearbeitet 21.11.2024 08:22:53
In Progress MOVEit Transfer versions released before 2021.1.8 (13.1.8), 2022.0.8 (14.0.8), 2022.1.9 (14.1.9), 2023.0.6 (15.0.6), a reflected cross-site scripting (XSS) vulnerability has been identified in MOVEit Transfer's web interface. An attacke...
CVE-2023-40043
- EPSS 0.47%
- Veröffentlicht 20.09.2023 17:15:11
- Zuletzt bearbeitet 21.11.2024 08:18:35
In Progress MOVEit Transfer versions released before 2021.1.8 (13.1.8), 2022.0.8 (14.0.8), 2022.1.9 (14.1.9), 2023.0.6 (15.0.6), a SQL injection vulnerability has been identified in the MOVEit Transfer web interface that could allow a MOVEit system ...
CVE-2023-36934
- EPSS 91.53%
- Veröffentlicht 05.07.2023 16:15:09
- Zuletzt bearbeitet 21.11.2024 08:10:57
In Progress MOVEit Transfer before 2020.1.11 (12.1.11), 2021.0.9 (13.0.9), 2021.1.7 (13.1.7), 2022.0.7 (14.0.7), 2022.1.8 (14.1.8), and 2023.0.4 (15.0.4), a SQL injection vulnerability has been identified in the MOVEit Transfer web application that c...
CVE-2023-36933
- EPSS 19.16%
- Veröffentlicht 05.07.2023 16:15:09
- Zuletzt bearbeitet 21.11.2024 08:10:56
In Progress MOVEit Transfer before 2021.0.9 (13.0.9), 2021.1.7 (13.1.7), 2022.0.7 (14.0.7), 2022.1.8 (14.1.8), and 2023.0.4 (15.0.4), it is possible for an attacker to invoke a method that results in an unhandled exception. Triggering this workflow c...
CVE-2023-36932
- EPSS 17.88%
- Veröffentlicht 05.07.2023 16:15:09
- Zuletzt bearbeitet 21.11.2024 08:10:56
In Progress MOVEit Transfer before 2020.1.11 (12.1.11), 2021.0.9 (13.0.9), 2021.1.7 (13.1.7), 2022.0.7 (14.0.7), 2022.1.8 (14.1.8), and 2023.0.4 (15.0.4), multiple SQL injection vulnerabilities have been identified in the MOVEit Transfer web applicat...
CVE-2023-35708
- EPSS 28.84%
- Veröffentlicht 16.06.2023 04:15:14
- Zuletzt bearbeitet 21.11.2024 08:08:32
In Progress MOVEit Transfer before 2021.0.8 (13.0.8), 2021.1.6 (13.1.6), 2022.0.6 (14.0.6), 2022.1.7 (14.1.7), and 2023.0.3 (15.0.3), a SQL injection vulnerability has been identified in the MOVEit Transfer web application that could allow an unauthe...
CVE-2023-35036
- EPSS 34.33%
- Veröffentlicht 12.06.2023 03:15:09
- Zuletzt bearbeitet 03.01.2025 19:15:10
In Progress MOVEit Transfer before 2021.0.7 (13.0.7), 2021.1.5 (13.1.5), 2022.0.5 (14.0.5), 2022.1.6 (14.1.6), and 2023.0.2 (15.0.2), SQL injection vulnerabilities have been found in the MOVEit Transfer web application that could allow an unauthentic...
CVE-2023-34362
- EPSS 94.25%
- Veröffentlicht 02.06.2023 14:15:09
- Zuletzt bearbeitet 27.10.2025 14:37:08
In Progress MOVEit Transfer before 2021.0.6 (13.0.6), 2021.1.4 (13.1.4), 2022.0.4 (14.0.4), 2022.1.5 (14.1.5), and 2023.0.1 (15.0.1), a SQL injection vulnerability has been found in the MOVEit Transfer web application that could allow an unauthentica...
CVE-2021-38159
- EPSS 3.42%
- Veröffentlicht 07.08.2021 17:15:07
- Zuletzt bearbeitet 21.11.2024 06:16:31
In certain Progress MOVEit Transfer versions before 2021.0.4 (aka 13.0.4), SQL injection in the MOVEit Transfer web application could allow an unauthenticated remote attacker to gain access to the database. Depending on the database engine being used...
CVE-2021-37614
- EPSS 0.17%
- Veröffentlicht 05.08.2021 20:15:09
- Zuletzt bearbeitet 21.11.2024 06:15:31
In certain Progress MOVEit Transfer versions before 2021.0.3 (aka 13.0.3), SQL injection in the MOVEit Transfer web application could allow an authenticated remote attacker to gain access to the database. Depending on the database engine being used (...