Vulnerabilities > Fortra > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-10-09 CVE-2024-8264 Information Exposure Through Log Files vulnerability in Fortra Robot Schedule
Fortra's Robot Schedule Enterprise Agent prior to version 3.05 writes FTP username and password information to the agent log file when detailed logging is enabled.
local
low complexity
fortra CWE-532
5.5
2024-08-14 CVE-2024-25157 Improper Authentication vulnerability in Fortra Goanywhere Managed File Transfer
An authentication bypass vulnerability in GoAnywhere MFT prior to 7.6.0 allows Admin Users with access to the Agent Console to circumvent some permission checks when attempting to visit other pages.
network
low complexity
fortra CWE-287
6.5
2023-11-22 CVE-2023-6253 Insecure Storage of Sensitive Information vulnerability in Fortra Digital Guardian Agent
A saved encryption key in the Uninstaller in Digital Guardian's Agent before version 7.9.4 allows a local attacker to retrieve the uninstall key and remove the software by extracting the uninstaller key from the memory of the uninstaller file.
local
low complexity
fortra CWE-922
6.0