Progress has released software updates to address eight vulnerabilities in its WS_FTP Server software that could lead to remote code execution. Vulnerabilities include deserialization, directory traversal, XSS, SQL injection, CSRF and authentication bypass. WS_FTP Server versions before 8.7.4 and 8.8.2 are affected. Users are advised to update ASAP.

#cybersecurity #progress #ws_ftp

https://thehackernews.com/2023/09/progress-software-releases-urgent.html

Progress Software Releases Urgent Hotfixes for Multiple Security Flaws in WS_FTP Server

Progress Software releases hotfixes for critical CVE-2023-40044 and 7 other vulnerabilities in WS_FTP Server

The Hacker News