CVE-2025-2324 | Progress MOVEit Transfer up to 2023.1.11/2024.0.7/2024.1.1 SFTP Module privileges management
A vulnerability was found in Progress MOVEit Transfer up to 2023.1.11/2024.0.7/2024.1.1. It has been declared as critical. This vulnerability affects unknown code of the component SFTP Module. The manipulation leads to improper privilege management.
This vulnerability was named CVE-2025-2324. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.