Security Advisory

CVE-2025-1241

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-04-21 14:10:09
Last updated 2026-04-21 19:33:03
Assigner Fortra
State PUBLISHED

Description

Encrypted values in Fortras GoAnywhere MFT prior to version 7.10.0 and GoAnywhere Agents prior to version 2.2.0 utilize a static IV which allows admin users to brute-force decryption of data.