CyberRota Analysis
AI-GeneratedA path traversal vulnerability in Fortra's GoAnywhere MFT prior to version 7.10.2 allows authenticated Web Users with Secure Folders and Secure Mail permissions to access files outside their designated home directory, potentially leading to unauthorized file disclosure. Organizations utilizing this software, particularly those with sensitive data management needs, should prioritize patching to mitigate the risk of data exposure.
Original NVD Description
In versions prior to 7.10.2 a path traversal vulnerability in the /attachRemoteFiles endpoint of Fortra's GoAnywhere MFT allows Web Users with both Secure Folders and Secure Mail permissions to escape their sandboxed home directory, achieving arbitrary file read.