A critical SQL injection vulnerability in Fortra FileCatalyst Workflow (CVE-2024-5276) has been patched; a PoC exploit is already available online. While there’s currently no reports of in-the-wild exploitation, enterprise admins are advised to patch their installations as soon as possible. About CVE-2024-5276 Fortra FileCatalyst is an enterprise software solution for accellerated, UDP-based file transfer of large files. It includes the following components: FileCatalyst Direct (a suite of server and client applications for file transfer) Workflow … More

The post PoC exploit for critical Fortra FileCatalyst flaw published (CVE-2024-5276) appeared first on Help Net Security.