AETERNAE AI RESEARCH LLC INDEPENDENT RESEARCH
ÆAETERNAERESEARCH
Sign inRequest access
← CVE index
Δ / VULNERABILITY RECORD

CVE-2023-40044.

Source-reported disclosure and enrichment record.

SEVERITY / CVSSUnscoredNo severity score in this snapshot.
EXPLOITATION STATUSCISA known exploitedAdded Oct 05, 2023
RECORD STATUSAwaiting NVD dataModified Oct 05, 2023

Disclosure summary

Progress WS_FTP Server contains a deserialization of untrusted data vulnerability in the Ad Hoc Transfer module that allows an authenticated attacker to execute remote commands on the underlying operating system.

CISA remediation guidance

Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Original records & references

PUBLISHED 2023-10-05T00:00:00-04:00
MODIFIED 2023-10-05T00:00:00-04:00
INGESTED 2026-10-06T11:42:58-04:00