← All CVEs NewScan detects
criticalKEV

CVE-2023-34362

MOVEit Transfer SQL injection -> RCE (Cl0p mass-exploitation)

Severity
critical
Affected product
MOVEit Transfer
Affected versions
MOVEit Transfer < 2023.0.1
Fixed in
MOVEit Transfer 2023.0.1
CISA KEV
Listed as a known exploited vulnerability
EPSS
94% chance of exploitation in the next 30 days
Added to NewScan
2026-07-13
Detected by
NewScan — free, self-hosted

How NewScan reports it

APPLIANCE FINGERPRINT

NewScan fingerprints the MOVEit Transfer appliance and reports this CVE when the detected version falls inside the affected range below.

References

Scan for this yourself — local, in-band scanning is free.

Get NewScan (FREE) →