Fortra GoAnywhere MFT InitialAccountSetup Direct Request Vulnerability Exploit

This module connects to the remote host and attempts to determine by sending specially crafted requests, if the target is vulnerable or not to CVE-2024-0204 based on the inspection of the target's response. If the target is vulnerable, the module will create a new admin user in the target system using the provided credentials. If no credentials are provided, it will generate a random one. Also, the new admin credentials will be added as an identity.
Exploit Platform
Exploit Type
Product Name