cognitive cybersecurity intelligence

News and Analysis

Search

CrushFTP Vulnerability Exploited to Bypass Authentication

A critical vulnerability (CVE-2025-2825) in CrushFTP allows attackers to bypass authentication, affecting versions 10.0.0 to 10.8.3 and 11.0.0 to 11.3.0. With a CVSS score of 9.8, this flaw permits unauthorized access via a parameter misuse in the API. CrushFTP has released version 11.3.1 with fixes. Users are urged to upgrade immediately.

Source: cybersecuritynews.com –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts