Progress MOVEit Automation Authentication Bypass RCE | MSSP Advisory
Critical
DateMay 4, 2026
📋Executive Summary
Progress Software disclosed a critical authentication bypass vulnerability (CVE-2024-7954) in MOVEit Automation that allows unauthenticated attackers to create admin accounts with full system access. The flaw affects MOVEit Automation versions 2023.0.0 through 2024.1.0 and requires no user interaction to exploit. Progress released patches for all affected versions and confirmed no evidence of active exploitation.
⚠️Why It Matters for MSSPs
MOVEit products are prime targets for ransomware groups who understand that compromising one file transfer system gives access to data flowing between multiple organizations. Your clients running MOVEit Automation face immediate risk of complete system compromise through admin account creation, and you need documented proof you warned them before attackers start exploiting this bypass.
✅Recommended Action
Contact every client running MOVEit Automation immediately to verify they have applied the patches released by Progress and document their response in your ticketing system.
🔒Get your first advisory free →
Partner content — get access free
The recommended action is included in your white-labeled advisory — ready to send to clients under your name.
🏷️Threat Category
Vulnerability Disclosure
Partner MSSPs receive the full advisory — talking points, actions, and social posts — under their own brand.