menu
techminis

A naukri.com initiative

google-web-stories
source image

Securityaffairs

2w

read

239

img
dot

Image Credit: Securityaffairs

CrushFTP CVE-2025-2825 flaw actively exploited in the wild

  • Threat actors are actively exploiting the CrushFTP CVE-2025-2825 flaw, allowing unauthenticated access to unpatched devices.
  • The vulnerability affects CrushFTP versions 10.0.0 through 10.8.3 and 11.0.0, granting unauthorized access to attackers through remote and unauthenticated HTTP requests.
  • Security researchers have identified approximately 1,800 vulnerable instances, with over 900 located in the US.
  • CrushFTP recommends immediate action to address the vulnerability and suggests enabling the DMZ perimeter network as a temporary security measure.

Read Full Article

like

14 Likes

For uninterrupted reading, download the app