ConnectWise Issues Emergency Fix for ScreenConnect File Transfer Vulnerability
ConnectWise has disclosed a security flaw that compromises the file transfer feature of its ScreenConnect Remote Access product, affecting both cloud-hosted and on-premises installations. The vulnerability, which allows unauthorized access to files transferred during support sessions, was first reported by the security research group GBHackers.
The defect resides in the way ScreenConnect handles guest file transfer sessions, potentially enabling an attacker to intercept or manipulate data exchanged between a support technician and a client. While the company has not disclosed technical specifics, the issue is confined to the file transfer component and does not appear to affect the core remote control functionality.
In response, ConnectWise released an immediate mitigation package, urging all users to apply the update without delay. The patch disables the vulnerable file transfer pathway until a permanent fix can be rolled out, thereby preventing exploitation while preserving the overall remote access capabilities of the platform.
Remote support tools like ScreenConnect have become integral to IT service providers, especially as hybrid work models increase reliance on offsite troubleshooting. A breach in such software could expose sensitive corporate data, making swift remediation critical for organizations that depend on these services for daily operations.
ConnectWise has advised customers to verify that their deployments—whether managed in the cloud or self-hosted—are running the latest version and to review any recent file transfer logs for unusual activity. The company also recommends reviewing access controls and employing multi-factor authentication to further reduce risk.
Industry analysts note that the rapid response underscores the growing pressure on vendors to maintain robust security postures amid a surge in cyber threats targeting remote-access solutions. ConnectWise has indicated that a comprehensive, permanent fix will be incorporated into the next scheduled release, and it plans to work closely with security researchers to monitor for any related vulnerabilities.
Comments (0)
Be the first to comment.
Join the discussion