Fortra
Fortra Filecatalyst Direct: vulnerabilidades y CVE
Fortra Filecatalyst Direct tiene 2 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE2
Últimos 12 meses0
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2024-25155 | Media (6.1) | 0.39% | — | 13 mar 2024 | In FileCatalyst Direct 3.8.8 and earlier through 3.8.6, the web server does not properly sanitize illegal characters in a URL which is then displayed on a subsequent error page. A malicious actor could craft a URL which… |
| CVE-2024-25154 | Media (5.3) | 0.46% | — | 13 mar 2024 | Improper URL validation leads to path traversal in FileCatalyst Direct 3.8.8 and earlier allowing an encoded payload to cause the web server to return files located outside of the web root which may lead to data leakage. |
Otros productos de Fortra
Goanywhere Managed File Transfer · 13Filecatalyst Workflow · 4Boks Manager · 3Goanywhere MFT · 3Core Privileged Access Manager · 3Robot Schedule · 2Boks Server Agent · 2Core Privileged Access Manager Server · 2File Integrity Monitoring · 2Filecatalyst · 1Digital Guardian Agent · 1Goanywhere Agents · 1