Crushftp

Crushftp

17 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 76.82%
  • Published 18.11.2023 00:15:07
  • Last modified 21.11.2024 08:23:47

CrushFTP prior to 10.5.1 is vulnerable to Improperly Controlled Modification of Dynamically-Determined Object Attributes.

Exploit
  • EPSS 0.56%
  • Published 15.09.2022 13:15:09
  • Last modified 21.11.2024 06:30:19

An issue was discovered in CrushFTP 9. The creation of a new user through the /WebInterface/UserManager/ interface allows an attacker, with access to the administration panel, to perform Stored Cross-Site Scripting (XSS). The payload can be executed ...

  • EPSS 0.27%
  • Published 26.12.2019 01:15:10
  • Last modified 21.11.2024 03:55:39

CrushFTP through 8.3.0 is vulnerable to credentials theft via URL redirection.

  • EPSS 0.53%
  • Published 30.08.2017 21:29:00
  • Last modified 20.04.2025 01:37:25

CrushFTP 8.x before 8.2.0 has a serialization vulnerability.

  • EPSS 0.14%
  • Published 30.08.2017 21:29:00
  • Last modified 20.04.2025 01:37:25

CrushFTP before 7.8.0 and 8.x before 8.2.0 has a redirect vulnerability.

  • EPSS 0.2%
  • Published 30.08.2017 21:29:00
  • Last modified 20.04.2025 01:37:25

CrushFTP before 7.8.0 and 8.x before 8.2.0 has an HTTP header vulnerability.

  • EPSS 0.2%
  • Published 30.08.2017 21:29:00
  • Last modified 20.04.2025 01:37:25

CrushFTP before 7.8.0 and 8.x before 8.2.0 has XSS.