Crushftp vulnerability operated in the wild, added to the Cisa Kev database


  • A critical flaw was discovered in the CrushftP file transfer tool
  • Experts claim that the question was abused in nature
  • Cisa added the fault to its Kev catalog

A vulnerability of critical severity distressing the CruitftP file transfer software has been actively observed in the wild.

Earlier this month, it was reported that the software, commonly used by organizations to manage large-scale file transfers, contained a vulnerability of authentication bypass that allowed non-authenticated attackers to obtain administrative access.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top