Vulnerabilities > CVE-2023-24029 - Incorrect Authorization vulnerability in Progress WS FTP Server

047910
CVSS 7.2 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
HIGH
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
network
low complexity
progress
CWE-863

Summary

In Progress WS_FTP Server before 8.8, it is possible for a host administrator to elevate their privileges via the administrative interface due to insufficient authorization controls applied on user modification workflows.

Vulnerable Configurations

Part Description Count
Application
Progress
1

Common Weakness Enumeration (CWE)