Crushftp Vulnerabilities

Comprehensive security vulnerability database for Crushftp products

Last updated: Apr 22, 2024
Total CVEs

1

Critical

1

With Exploits

1

Last 30 Days

0

Severity Distribution

Critical1
100%
High0
0%
Medium0
0%
Low0
0%
DescriptionVendor / ProductExploit Status
CVE-2024-404010.0

This vulnerability allows attackers to read files from the server, bypass authentication to gain admin access, and execute malicious code remotely. It affects all versions of CrushFTP before 10.7.1 and 11.1.0, and attackers do not need to be logged in to exploit it.

crushftpcrushftp
Exploit Available
almost 2 years agoApr 22, 2024

About Crushftp Security

This page tracks all publicly disclosed security vulnerabilities (CVEs) affecting Crushftp products. Our database is updated in real-time from the National Vulnerability Database (NVD) and enriched with exploit information from GitHub and other security research sources.

Each CVE listing includes CVSS severity scores, exploit availability status, AI-powered vulnerability summaries, and links to official patches and security advisories.