CVE-2024-5806#

Statement on CVE-2024-5806 MOVEit Transfer Bug#

July 01, 2024

Information#

Improper Authentication vulnerability in Progress MOVEit Transfer (SFTP module) can lead to Authentication Bypass.This issue affects MOVEit Transfer: from 2023.0.0 before 2023.0.11, from 2023.1.0 before 2023.1.6, from 2024.0.0 before 2024.0.2.

Severity#

Low

Response#

Melissa Data Corporation (“Melissa”) was not impacted by the MOVEit Transfer Bug vulnerability. Any Melissa commercial web services or products were not impacted by this vulnerability.

Melissa will continue to follow all guidance provided for this vulnerability as necessary to prevent any future risks.

If you have any additional questions, please contact Melissa’s Compliance department at Compliance@melissa.com.