Back

MEDIUM

Limited Information Disclosure in GoAnywhere MFT Prior to 7.7.0

Published Dec 13, 2024

Description

An information-disclosure vulnerability exists in Fortra's GoAnywhere MFT application prior to version 7.7.0 that allows external access to the resources in certain admin root folders.

Affected products

Remediation

Vendor solution

Upgrade to GoAnywhere 7.7.0 or higher.

References (2)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner Fortra
Published Dec 13, 2024
Updated Aug 29, 2025
Reserved Oct 14, 2024
CISA Vulnrichment
Updated Dec 13, 2024
NVD
Status Deferred
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a
ENISA EUVD
Assigner Fortra
Published Dec 13, 2024
Updated Aug 29, 2025
Exploited since n/a
EUVD-2024-50408