CVE-2021-27103
Accellion FTA Server-Side Request Forgery (SSRF) Vulnerability
Accellion FTA 9_12_411 and earlier is affected by SSRF via a crafted POST request to wmProgressstat.html. The fixed version is FTA_9_12_416 and later.
CRITICAL · CVSS 9.8
⚠ CISA KEV
EPSS 0.01103
Ransomware: known
Act now
- Listed on CISA KEV (known exploited in the wild)
- Linked to known ransomware campaigns
- SSVC exploitation status: active
- CVSS base score ≥ 7.0
Sigma rules10
YARA rules0