Files
CVEs-PoC/2025/CVE-2025-2825.md
T
2025-09-29 21:09:30 +02:00

1.3 KiB

CVE-2025-2825

Description

CrushFTP versions 10.0.0 through 10.8.3 and 11.0.0 through 11.3.0 are affected by a vulnerability in the S3 authorization header processing that allows authentication bypass. Remote and unauthenticated HTTP requests to CrushFTP with known usernames can be used to impersonate a user and conduct actions on their behalf, including administrative actions and data retrieval.

POC

Reference

Github