RaqibCTI
CVE

CVE-2023-40044

P1⬤ KNOWN RANSOMWARE USE
Progress WS_FTP Server Deserialization of Untrusted Data Vulnerability
Progress · WS_FTP Server
Date added (CISA)
2023-10-05
Remediation due
2023-10-26
Known ransomware use
Yes
Remediation priority
P1known ransomware use · past CISA due date

Description

Progress WS_FTP Server contains a deserialization of untrusted data vulnerability in the Ad Hoc Transfer module that allows an authenticated attacker to execute remote commands on the underlying operating system.

Source: NVD ↗ · CISA KEV Catalog ↗

CVE-2023-40044: Progress WS_FTP Server Deserialization of Untrusted Data Vulnerability · RaqibCTI