Major SQL Injection Flaw Uncovered in Fortra FileCatalyst Workflow

CL

Fortra has swiftly issued updates to patch two urgent SQL injection vulnerabilities in its FileCatalyst Workflow application, identified as CVE-2024-6632 and CVE-2024-6633. These vulnerabilities pose a severe risk to the confidentiality, integrity, and availability of the systems if exploited.

FileCatalyst Workflow, a well-regarded tool for transferring large files over networks, was found to have critical security weaknesses. The flaws were brought to light on August 27, 2024, following an examination by cybersecurity experts Dynatrace and Tenable.

The vulnerabilities impact all versions up to 5.1.6 Build 139, potentially allowing unauthorized changes to databases and exposure of sensitive information.

Here’s a closer look at the vulnerabilities:

  • CVE-2024-6632: This flaw enables SQL injection attacks through a field accessible only to super administrators. Such attacks could lead to unauthorized database alterations, threatening both data integrity and system stability. Dynatrace uncovered this issue during a routine security review, noting that insufficient validation of user input during setup created a vector for potential exploitation.
  • CVE-2024-6633: This issue arises from the use of default credentials for the HSQL database during installation. Although this database is not meant for production environments, systems that haven’t transitioned to a different database setup remain exposed. This could result in unauthorized access and potential data breaches.

Fortra has resolved these issues in FileCatalyst Workflow version 5.1.7. It is crucial for users to update their software immediately to mitigate these risks.

The company has stressed the importance of adhering to recommended configurations, particularly regarding database setup, to prevent unauthorized access.

Organizations using FileCatalyst Workflow should review their security measures and ensure all systems are updated to the latest version to safeguard against potential vulnerabilities.

More Articles & Posts