Tech

CrushFTP vulnerability exploited in the wild, added to CISA KEV database

Share
Share


  • A critical flaw was discovered in file transfer tool CrushFTP
  • Experts claim the issue was being abused in the wild
  • CISA added the flaw to its KEV catalog

A critical-severity vulnerability plaguing file transfer software CrushFTP was found being actively exploited in the wild.

Earlier this month, it was reported that the software, commonly used by organizations to handle large-scale file transfers, contained an authentication bypass vulnerability which allowed unauthenticated attackers to gain administrative access.

Share

Leave a comment

Leave a Reply

Your email address will not be published. Required fields are marked *