PT-2026-36124 · Progress · Moveit Automation

Airbus Seclab

+4

·

Published

2026-04-30

·

Updated

2026-06-02

·

CVE-2026-5174

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions MOVEit Automation versions 2025.1.0 through 2025.1.4 MOVEit Automation versions 2025.0.0 through 2025.0.8 MOVEit Automation versions 2024.0.0 through 2024.1.7 MOVEit Automation versions prior to 2024.0.0
Description Improper input validation in Progress Software MOVEit Automation allows for privilege escalation.
Recommendations Update versions 2025.1.0 through 2025.1.4 to 2025.1.5. Update versions 2025.0.0 through 2025.0.8 to 2025.0.9. Update versions 2024.0.0 through 2024.1.7 to 2024.1.8. Update versions prior to 2024.0.0 to 2024.0.0 or later.

Fix

LPE

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-5174

Affected Products

Moveit Automation