Crushftp Latest Vulnerabilities
Latest vulnerabilities published by crushftp
Vulnerability Published:
- ποΈ Published - - Anytime 
Sort By:
- ποΈ Published Date - - Descending 
- AS2 Validation Misconfiguration in CrushFTP Affects Remote Admin AccessCVE-2025-54309CrushftpCrushftpππ°πΎπ‘EPSS 56%π¦ π°9CRITICAL
- SSRF Vulnerability in CrushFTP Versions 9.x to 11.xCVE-2025-32102CrushftpCrushftpπΎπ°5MEDIUM
- Directory Traversal Vulnerability in CrushFTP ProductsCVE-2025-32103CrushftpCrushftp5MEDIUM
- Authentication Bypass Vulnerability in CrushFTP by CrushFTPCVE-2025-31161CrushftpCrushftpπ₯ππ°πΎπ‘EPSS 86%π¦ π°9.8CRITICAL
- Unauthenticated Payload Execution through Improper Input Handling in Web Application LogsCVE-2024-11986Crushftp, LlcCrushftp9.6CRITICAL
- CrushFTP passwords reset vulnerability leads to account takeoverCVE-2024-53552CrushFTPCrushftp
- Cross Site Scripting Vulnerability in CrushFTP ProductsCVE-2024-22910CrushFTPCrushftp6.1MEDIUM
- Remote File Read Vulnerability in VFS SandboxCVE-2024-4040CrushftpCrushftpππ°πΎπ‘EPSS 94%π¦ π°9.8CRITICAL
- CrushFTP Prior to 10.5.1 Vulnerable to Improperly Controlled Modification of Dynamically-Determined Object AttributesCVE-2023-43177CrushftpCrushftpπΎπ‘EPSS 76%9.8CRITICAL
- Stored Cross-Site Scripting in CrushFTP by Crush FTP, Inc.CVE-2021-44076CrushftpCrushftp4.8MEDIUM
- Credentials Theft Vulnerability in CrushFTP by CrushFTP, Inc.CVE-2018-18288CrushftpCrushftp6.1MEDIUM
- Serialization Vulnerability in CrushFTP by Crush FTP, Inc.CVE-2017-14035CrushftpCrushftp9.8CRITICAL
- Cross-Site Scripting Vulnerability in CrushFTP by CrushFTP, Inc.CVE-2017-14036CrushftpCrushftp6.1MEDIUM
- HTTP Header Vulnerability in CrushFTP Versions by CrushFTPCVE-2017-14037CrushftpCrushftp6.1MEDIUM
- Redirect Vulnerability in CrushFTP by CrushFTP, Inc.CVE-2017-14038CrushftpCrushftp6.1MEDIUM