CVE-2016-2352: Accellion File Transfer Appliance

High severity, CVSS 8.8. EPSS: 5.4% chance of exploitation in the next 30 days.

The Accellion File Transfer Appliance (FTA) before FTA_9_12_40 allows remote authenticated users to execute arbitrary commands by leveraging the YUM_CLIENT restricted-user role.

Affected products

  • Accellion File Transfer Appliance: up to and including 9_11_210

Published 2016-05-07. Last modified 2026-06-17.