• A critical flaw was discovered in file transfer tool CrushFTP
  • Experts claim the issue was being abused in the wild
  • CISA added the flaw to its KEV catalog

A critical-severity vulnerability plaguing file transfer software CrushFTP was found being actively exploited in the wild.

Earlier this month, it was reported that the software, commonly used by organizations to handle large-scale file transfers, contained an authentication bypass vulnerability which allowed unauthenticated attackers to gain administrative access.



Source link


Leave a Reply

Your email address will not be published. Required fields are marked *