FAIL › dossier
FTA
PRODUCT· dossier confidence 20%
FTA, a vendor of file transfer software, suffered multiple critical security breaches between 2021 and 2026, resulting in data exfiltration and ransomware attacks impacting DIB organizations. The company's legacy File Transfer Appliance (FTA) platform was actively exploited and is now being phased out.
PROFILE
CategorySoftware VendorWhat they doFTA builds and deploys software platforms for data transfer and storage, previously used by law firms and other organizations. The 20-year-old File Transfer Appliance (FTA) platform is being phased out.
Websitehttps://stockanalysis.com/stocks/pltr/company/ ↗
SECURITY POSTURE
FTA exhibited a severe security posture, with multiple critical vulnerabilities actively exploited leading to data breaches and ransomware attacks. The platform's age and the ongoing exploitation suggest a lack of proactive security maintenance.
Notable failures
- CVE-2021-27104 (critical RCE)
- CVE-2021-27102 (critical RCE)
- CVE-2021-27101 (critical SQL injection)
- CVE-2021-27103 (critical SSRF)
Patterns: Repeated critical vulnerabilities (RCE, SQL injection, SSRF); Active exploitation of vulnerabilities leading to ransomware attacks; Use of an aging platform with known vulnerabilities
FAILURE HISTORY · 4
| DATE | EVENT | SEV | SUMMARY |
|---|---|---|---|
| 2021-11-03 | CVE-2021-27104 | critical | Accellion FTA's OS command injection vulnerability allowed attackers to execute arbitrary commands, leading to data exfiltration and ransomware attacks. |
| 2021-11-03 | CVE-2021-27102 | critical | Accellion FTA's OS command injection vulnerability was actively exploited, likely contributing to ransomware attacks and data breaches affecting numerous DIB organizations and FedRAMP vendors who used it as a component in their systems. |
| 2021-11-03 | CVE-2021-27101 | critical | Accellion FTA's SQL injection vulnerability was actively exploited, leading to data breaches and ransomware attacks affecting DIB organizations using the product. |
| 2021-11-03 | CVE-2021-27103 | critical | Accellion FTA's SSRF vulnerability was actively exploited, linked to ransomware attacks, impacting DIB organizations using the platform for data transfer and storage. |
DOSSIER SOURCES
- Palantir Technologies (PLTR) Company Profile & Description · stockanalysis.com
- Full Truck Alliance Co Ltd, 892:DUS profile - FT.com · markets.ft.com
- A data breach is exposing Big Law firms who were using a 20-year-old ... · londondaily.com
- Clop Ransomware Gang Exploits Critical Vulnerability in PTC Windchill ... · skyportsystems.net
Open questions: What is the current ownership structure of FTA? · What is the timeline for the complete decommissioning of the FTA platform?
DOSSIER · dex-RAG synthesis · grounded in our own collection + trusted sourcesbuilt 2026-07-28 12:47:25.808142+00:00