FatPipe WARP, IPVPN, and MPVPN Configuration Upload exploit
FatPipe · WARP, IPVPN, and MPVPN software
Date added (CISA)
2022-01-10
Remediation due
2022-01-24
Known ransomware use
Not indicated
Remediation priority
P2 — past CISA due date
Description
A vulnerability in the web management interface of FatPipe WARP, IPVPN, and MPVPN software allows a remote, unauthenticated attacker to upload a file to any location on the filesystem.