CVE-2025-1241 - Encryption vulnerable to brute-force decryption in GoAnywhere MFT
CVE ID :CVE-2025-1241
Published : April 21, 2026, 3:16 p.m. | 56 minutes ago
Description :Encrypted values in Fortra's GoAnywhere MFT prior to version 7.10.0 and GoAnywhere Agents prior to version 2.2.0 utilize a static IV which allows admin users to brute-force decryption of data.
Severity: 5.8 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : April 21, 2026, 3:16 p.m. | 56 minutes ago
Description :Encrypted values in Fortra's GoAnywhere MFT prior to version 7.10.0 and GoAnywhere Agents prior to version 2.2.0 utilize a static IV which allows admin users to brute-force decryption of data.
Severity: 5.8 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...