Vulnerabilities > CVE-2023-24029 - Incorrect Authorization vulnerability in Progress WS FTP Server

047910
CVSS 7.2 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
HIGH
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
network
low complexity
progress
CWE-863

Summary

In Progress WS_FTP Server before 8.8, it is possible for a host administrator to elevate their privileges via the administrative interface due to insufficient authorization controls applied on user modification workflows.

Vulnerable Configurations

Part Description Count
Application
Progress
53

Common Weakness Enumeration (CWE)