SSRF Vulnerability in CrushFTP Versions 9.x to 11.x
CVE-2025-32102
Key Information:
Badges
What is CVE-2025-32102?
CVE-2025-32102 is a security vulnerability identified in specific versions of CrushFTP, a file transfer software designed for secure data handling. This vulnerability exists in CrushFTP versions 9.x to 11.x and allows for server-side request forgery (SSRF) through certain command parameters in the software’s web interface. The SSRF vulnerability may grant unauthorized access to internal services, leading to potential data breaches or unauthorized actions through the affected application, which can severely disrupt an organization's operational integrity and security posture.
Technical Details
The vulnerability arises from improper handling of user-supplied host and port parameters within a specific API request (command=telnetSocket) to the web interface of CrushFTP. This design flaw enables attackers to manipulate these parameters, potentially sending unauthorized requests to internal or external systems. The flaw is present in CrushFTP versions ranging from 9.x to 10.8.4 and in all versions of 11.x up to 11.3.1. These versions lack adequate input validation and sanitization, which can be exploited by attackers seeking to perform actions that should not ordinarily be permitted.
Potential Impact of CVE-2025-32102
-
Unauthorized Internal Access: Exploitation of this vulnerability could allow attackers to access internal services and resources that are not normally exposed to the outside network, enabling further attacks on sensitive data or systems.
-
Data Exposure and Breaches: The potential for SSRF could lead to unauthorized data exposure, which may include private or confidential information stored within the network, leading to significant data breaches and compliance issues.
-
System Compromise: If an attacker successfully exploits this vulnerability, they could manipulate internal systems for malicious purposes, potentially leading to full system compromise, unauthorized actions, or the deployment of additional malware within the network.
Affected Version(s)
CrushFTP 9 <= 10.8.4
CrushFTP 11 <= 11.3.1
News Articles
CVE-2025-32102 : CrushFTP 9.x and 10.x through 10.8.4 and 11.x through 11.3.1 allows SSRF via the
CVE-2025-32102 : CrushFTP 9.x and 10.x through 10.8.4 and 11.x through 11.3.1 allows SSRF via the host and port parameters in a command=telnetSocket request to the /We
CVE Trends Dashboard
We're in the process of developing the mobile version of our website to improve your browsing experience on smaller screens. Keep an eye out for its release in the near future.Thank you for your patience!
Packet Storm
Information Security Services, News, Files, Tools, Exploits, Advisories, and Whitepapers