Crushftp vulnerability exploited in nature, added to the CISA KEV database


  • A critical failure was discovered in the CRUSHFTP file transfer tool
  • Experts claim that the problem was being abused in nature
  • CISA added the defect to its Kev catalog

It was found that a CLSTLTFTP critical severity file transfer software was actively exploited in nature.

Earlier this month, it was reported that the software, commonly used by organizations to handle large -scale file transfers, contained a vulnerability of authentication derivation that allowed non -authenticated attackers to obtain administrative access.

Leave a Comment

Your email address will not be published. Required fields are marked *