Accellion FTA 9_12_370 and earlier is affected by OS...
Critical severity
Unreviewed
Published
May 24, 2022
to the GitHub Advisory Database
•
Updated Feb 3, 2025
Description
Published by the National Vulnerability Database
Feb 16, 2021
Published to the GitHub Advisory Database
May 24, 2022
Last updated
Feb 3, 2025
Accellion FTA 9_12_370 and earlier is affected by OS command execution via a crafted POST request to various admin endpoints. The fixed version is FTA_9_12_380 and later.
References