CVE-2024-0204PoC(fortra / goanywhere_managed_file_transfer)

LOWCVSS 9.8 · CRITICAL

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft
  • Track advisory updates for patch or workaround availability

Recommended action window: High priority (within 72h)

NVD description

Authentication bypass in Fortra's GoAnywhere MFT prior to 7.4.1 allows an unauthorized user to create an admin user via the administration portal.

1.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-425

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • goanywhere_managed_file_transfer

Threat summary

  • Public PoC is present in monitored signal
  • 2 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • PoC mentioned or linked in 1 signal
  • Technical details provided in 1 signal
  • Peaked 1d ago at 1 mentions (2026-03-13); latest day: 1
  • 2 total mentions across 2 days

Affected systems

Vendors
Products
goanywhere_managed_file_transfer

1 version affected across 1 product

Deep dive

Activity timeline2 mentions / 2d
00111Mentions · 2026-03-13: 1Mentions · 2026-10-05: 1PoC Mentioned / Linked · 2026-03-13: 1Technical Details · 2026-03-13: 103-1310-05
Signal classification1 categories
PoC
1100.0%
Referenced assets5 URLs
Full discourse2 posts
  • Hermes Tool@Hermes_tooll
    PoC

    CVE-2024-0230 Bluetooth vulnerabilities in Android Linux macOS iOS and Windows https://github.com/skysafe/reblog/tree/main/cve-2024-0230PoCs https://github.com/marcnewlin/hi_my_name_is_keyboard WifiKey AC Gateway Pre-auth RCE https://ssd-disclosure.com/ssd-advisory-wifikey-ac-gateway-pre-auth-rce CVE-2024-0204 PoC For Fortra GoAnywhere MFT Authentication Bypass https://horizon3.ai/cve-2024-0204-fortra-goanywhere-mft-authentication-bypass-deep-dive

    Post summary

    The post shares links to Proof of Concept code for CVE‑2024‑0230 (Bluetooth) and CVE‑2024‑0204 (pre‑auth RCE and authentication bypass). It provides no patch information, evidence of active exploitation, or debunking claims.

    0301391.1K
    2.5K followersView on X
  • DailyCVE@dailycve

    🔴 Fortra GoAnywhere MFT, Authentication Bypass, #CVE-2024-0204 (Critical) -DC-Oct2026-2725 https://dailycve.com/fortra-goanywhere-mft-authentication-bypass-cve-2024-0204-critical-dc-oct2026-2725/

    0000023
    239 followersView on X
CPE platform detail2 entries

2 of 2 entries

PartVendorProductVersionTarget SWTarget HW
Appfortragoanywhere_managed_file_transfer---
Appfortragoanywhere_managed_file_transfer6.0.0--

Explore more