CVE-2023-40048

Publication date

2023-09-27 14:51:35

Family

ProgressSoftware

State

PUBLISHED

Description

In WS_FTP Server version prior to 8.8.2, the WS_FTP Server Manager interface was missing cross-site request forgery (CSRF) protection on a POST transaction corresponding to a WS_FTP Server administrative function.