ConnectWise has issued a security advisory regarding an undisclosed file-transfer vulnerability affecting both cloud-hosted and on-premises ScreenConnect deployments. The company is recommending immediate temporary mitigations while a permanent fix is developed and a CVE assignment is pending, according to a recent report by Smarter MSP.The vulnerability impacts file-transfer functionality within ScreenConnect Remote Access Support and Access sessions. While specific technical details remain undisclosed, the issue could allow threat actors to move malicious or sensitive files during remote sessions. This is particularly concerning as remote management platforms like ScreenConnect often have privileged access to numerous endpoints and customer environments.Previous exploitation of ScreenConnect vulnerabilities has been linked to ransomware operators and state-sponsored groups. With nearly 6,000 internet-exposed ScreenConnect instances tracked by Shadowserver, the potential for opportunistic exploitation is significant if file-transfer permissions are not immediately restricted. Organizations are advised to remove file-transfer permissions from technician roles as an interim measure until ConnectWise releases a permanent solution and a CVE is assigned.Source: Smarter MSP