Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 24 Nov 2025 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:progress:moveit_transfer:*:*:*:*:*:*:*:* |
Mon, 24 Nov 2025 09:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Progress
Progress moveit Transfer |
|
| Vendors & Products |
Progress
Progress moveit Transfer |
Wed, 19 Nov 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 19 Nov 2025 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Server-Side Request Forgery (SSRF) vulnerability in Progress MOVEit Transfer.This issue affects MOVEit Transfer: before 2024.1.8, from 2025.0.0 before 2025.0.4. | |
| Title | External Service Interaction (DNS) | |
| Weaknesses | CWE-918 | |
| References |
|
|
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ProgressSoftware
Published:
Updated: 2025-11-19T20:50:10.151Z
Reserved: 2025-11-13T20:06:29.891Z
Link: CVE-2025-13147
Updated: 2025-11-19T20:50:03.075Z
Status : Analyzed
Published: 2025-11-19T21:15:48.943
Modified: 2025-11-24T14:58:20.290
Link: CVE-2025-13147
No data.
OpenCVE Enrichment
Updated: 2025-11-24T09:10:44Z