KNOWN EXPLOITED VULNERABILITY DOSSIER

CVE-2023-34362

Progress Software · MOVEit Transfer

SQL injection vulnerability in the MOVEit Transfer web application that permitted unauthenticated privilege escalation and mass exfiltration by CL0P.

CISA KEV Added: 2023-06-02
Severity Rating: Critical (CVSS 9.8)
Legal Indictments: 0 Cases
Catalog Status: Active KEV Mandate

Correlated Federal Court Cases & Indictments (0)

No specific federal indictment in our landmark database directly links to this CVE yet. This vulnerability is monitored under CISA's Known Exploited Vulnerabilities catalog.

Associated Government Advisories

← Back to All CVEs Explore ATT&CK Matrix →