A vulnerability has been discovered in CrushFTP, which could allow for unauthorized access. CrushFTP is a proprietary multi-protocol, multi-platform file transfer server. The vulnerability is mitigated if the DMZ feature of CrushFTP is in place. Successful exploitation of this vulnerability could allow an attacker to remotely control the compromised server and execute remote code. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights.
More Stories
zabbix-6.0.39-1.fc40
FEDORA-2025-d4263ef3ef Packages in this update: zabbix-6.0.39-1.fc40 Update description: Update to 6.0.39 (CVE-2024-45700, CVE-2024-36469, CVE-2024-42325, CVE-2024-45699) Read More
cri-o1.31-1.31.7-1.fc43
FEDORA-2025-556d8c02d7 Packages in this update: cri-o1.31-1.31.7-1.fc43 Update description: Automatic update for cri-o1.31-1.31.7-1.fc43. Changelog * Wed Apr 2 2025 Bradley G...
zabbix-7.2.5-1.fc42
FEDORA-2025-700a59e277 Packages in this update: zabbix-7.2.5-1.fc42 Update description: Update to 7.2.5 (CVE-2024-36469, CVE-2024-42325, CVE-2024-45700) Read More
zabbix7.0-7.0.11-1.el8
FEDORA-EPEL-2025-01e745cb85 Packages in this update: zabbix7.0-7.0.11-1.el8 Update description: Update to 7.0.11 CVE-2024-36465, CVE-2024-36469, CVE-2024-42325, CVE-2024-45699, CVE-2024-45700 Re-install SELinux module in...
zabbix7.0-7.0.11-1.el9
FEDORA-EPEL-2025-80a466f7f5 Packages in this update: zabbix7.0-7.0.11-1.el9 Update description: Update to 7.0.11 CVE-2024-36465, CVE-2024-36469, CVE-2024-42325, CVE-2024-45699, CVE-2024-45700 Re-install SELinux module in...
zabbix6.0-6.0.39-1.el8
FEDORA-EPEL-2025-77875be662 Packages in this update: zabbix6.0-6.0.39-1.el8 Update description: Update to 6.0.39 CVE-2024-45700, CVE-2024-36469, CVE-2024-42325, CVE-2024-45699 Fix selinux module name in...