Often, the most "useful" findings during audits are not CVEs but misconfigurations specific to GlobalScape EFT:
Globalscape follows a Security Vulnerability Discovery and Remediation process to address these threats. globalscape documented security vulnerabilities
An attacker can remotely determine the hard drive serial number where Globalscape is installed via a "trial extension request" message. While classified as lower risk, it provides environmental reconnaissance for further attacks. Often, the most "useful" findings during audits are
If operating Globalscape EFT:
GlobalScape EFT is a high-value target for attackers because it acts as a gateway for sensitive data transfer (Managed File Transfer). Historically, vulnerabilities have centered around: vulnerabilities have centered around: