Progress WS_FTP Server Deserialization of Untrusted Data Vulnerability
Vendor: Progress
Product: WS_FTP Server
Added: 2023-10-05
Due Date: 2023-10-26
Description:
Progress WS_FTP Server contains a deserialization of untrusted data vulnerability in the Ad Hoc Transfer module that allows an authenticated attacker to execute remote commands on the underlying operating system.
Required Action:
Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.
CWEs: