
ThreatCluster@threatcluster
Active Exploitation
CVE-2023-40044, a deserialization bug in Progress WS_FTP Server's Ad Hoc Transfer module enabling unauthenticated RCE on versions before 8.7.4 and 8.8.2, was added to CISA's Known Exploited Vulnerabilities list, Rapid7 reported. https://threatcluster.io/cluster/critical-rce-vulnerability-in-ws_ftp-server-disclosed-541d254b
Post summary
CVE-2023-40044, a deserialization bug allowing unauthenticated RCE in Progress WS_FTP Server prior to versions 8.7.4 and 8.8.2, has been identified as actively exploited and added to CISA’s Known Exploited Vulnerabilities list.
0000064
356 followersView on X
