Critical Pre-Authentication Flaw in Progress Software’s WS_FTP Server Exploited in the Wild

Just days after the release of patches for a critical pre-authentication flaw in Progress Software’s WS_FTP server product, security experts have detected active exploitation in the wild against multiple target environments. Cybersecurity vendor Rapid7 raised the alarm over the weekend after it spotted instances of live exploitation of the WS_FTP vulnerability in various customer environments.

Overview of CVE-2023-40044 Vulnerability

The easy-to-exploit CVE-2023-40044 vulnerability is already in the crosshairs of attackers attempting mass exploitation of vulnerable WS_FTP servers. This critical-severity flaw, carrying a CVSS score of 10/10, can be triggered by attackers over the internet and affects all WS_FTP Server versions prior to 8.7.4 and 8.8.2.

Affected Versions and Components

The flaw affects the entire Ad Hoc Transfer component of WS_FTP. It allows attackers to exploit the vulnerability without any authentication, which was a shocking discovery made by the research outfit Assetnote, which initially found the issue.

Discovery and Shocking Findings

Assetnote, the research outfit that discovered the vulnerability, expressed their surprise at being able to reach the deserialization sink without any authentication. This finding highlights the severity and urgency in addressing the flaw as it exposes systems to potential compromise.

Scope of Exposure

Assetnote has identified nearly 3,000 hosts running WS_FTP with exposed web servers. Notably, most of these exposed assets belong to large enterprises, governments, and educational institutions. The extensive exposure poses a serious threat, potentially leading to unauthorized access and further exploitation.

Progress Software’s Security Response Challenges

Progress Software’s security response team finds itself scrambling to respond to a wave of debilitating ransomware attacks that exploit zero-day flaws in its MOVEit managed file transfer software product. This recent spate of attacks highlights the increasing importance of diligent patching and proactive security measures to protect against potential exploits.

Earlier this year, the company rushed out patches to cover at least three critical vulnerabilities and announced plans to release regular service packs. These service packs aim to provide a predictable, simple, and transparent process for product and security fixes. By regularly updating their software, Progress Software can more effectively address emerging vulnerabilities and protect their customers.

Definition of Service Packs

Software vendors typically use a service pack to deliver a collection of updates, fixes, features, or enhancements to an application. These packs consolidate all necessary software revisions into a comprehensive package, simplifying the patching process for users and ensuring they have the latest security measures in place.

The active exploitation of a critical pre-authentication flaw in Progress Software’s WS_FTP server product highlights the urgency for organizations to promptly apply patches and bolster their security measures. With attackers actively targeting vulnerable systems, the potential for unauthorized access and exploitation is significant. Combined efforts from security researchers, vendors, and IT administrators are necessary to mitigate the risks posed by such vulnerabilities. It is crucial that organizations regularly update their software and remain vigilant in their cybersecurity practices to defend against emerging threats.

Explore more

Oracle and SWIFT Launch 24/7 Tokenized Global Payments

The integration of Oracle and SWIFT signifies that the fundamental pipes of global finance have been permanently re-routed for a digital-native economy. On September 29, 2026, the landscape of global corporate finance reached a definitive structural milestone as Oracle officially began linking its enterprise banking software with SWIFT’s decentralized blockchain ledger. This development represents much more than a routine technical

Climate Risks Threaten UK Data Center Construction Through 2027

The rapid expansion of artificial intelligence in the United Kingdom faces a significant physical bottleneck as increasingly volatile weather patterns threaten to disrupt data center construction through 2027. This burgeoning sector, essential for the modern digital economy, is currently at a crossroads where the sheer velocity of technological demand collides with the harsh realities of physical site management. As global

Is the Gigabyte TRX50 AERO D the Ultimate HEDT Motherboard?

Passive VRM heatsinks and M.2 thermal guards work in tandem to provide a silent yet effective thermal management system for high-core-count processing tasks. This design philosophy is central to the identity of the Gigabyte TRX50 AERO D, a motherboard that has arrived at a time when the high-end desktop market is more specialized than ever before. While the industry once

How Can SoMs Speed Up STM32 Microprocessor Development?

Achieving SESIP Level 3 certification requires a robust hardware root of trust, a standard feature integrated into the architecture of the STM32 microprocessor series. This inherent security foundation provides a launching pad for developers moving from microcontrollers to more powerful microprocessors like the STM32MP1 or STM32MP2. While microcontrollers handle deterministic tasks with ease, microprocessors introduce a layer of complexity involving

How Can ATM Virtualization and Automation Drive Innovation?

The enduring relevance of the automated teller machine in an increasingly digital world challenges the long-standing predictions that physical currency would eventually vanish from modern commerce. Even as we navigate 2026, the global ATM market continues to experience a surprising resurgence, with projections indicating a valuation exceeding $45 billion by the end of the current decade. This growth is driven