Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-g533-46g7-g2f9

Опубликовано: 26 мар. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

CrushFTP versions 10.0.0 through 10.8.3 and 11.0.0 through 11.3.0 are affected by a vulnerability that may result in unauthenticated access. Remote and unauthenticated HTTP requests to CrushFTP may allow attackers to gain unauthorized access.

CrushFTP versions 10.0.0 through 10.8.3 and 11.0.0 through 11.3.0 are affected by a vulnerability that may result in unauthenticated access. Remote and unauthenticated HTTP requests to CrushFTP may allow attackers to gain unauthorized access.

9.8 Critical

CVSS3

Дефекты

CWE-287

Связанные уязвимости

nvd
11 месяцев назад

Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: CVE-2025-31161. Reason: This Record is a reservation duplicate of CVE-2025-31161. Notes: All CVE users should reference CVE-2025-31161 instead of this Record. All references and descriptions in this Record have been removed to prevent accidental usage.

CVSS3: 9.8
fstec
11 месяцев назад

Уязвимость веб-интерфейса кроссплатформенного FTP-сервера CrushFTP, позволяющая нарушителю получить несанкционированный доступ к программному обеспечению

9.8 Critical

CVSS3

Дефекты

CWE-287