Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Crushftp

First CVE: Aug 30, 2017Active for: 9 yearsTotal CVEs: 17
67.2
VTI Score
TOP TARGET

CrushFTP is a file-transfer server product that, despite a narrow product portfolio, ranks among the more prominent vendors in the vulnerability landscape and presents a focused but critical attack surface for organizations deploying it. Vulnerabilities affecting the vendor skew strongly toward critical-severity outcomes, have an elevated tendency toward confirmed in-the-wild exploitation, and frequently acquire public exploit code; the recurring weakness classes—including cross-site scripting, open redirects, authentication bypass, unsafe deserialization, and improper code-resource management—reflect the web-accessible and dynamic-code demands of an FTP-server platform. Defenders should treat CrushFTP advisories as high-priority and prioritize patching, particularly for internet-exposed instances; live severity, exploitation, and exposure counts are shown alongside this summary.

FAUCET AI Generated
17
Total CVEs
More Total CVEs than 95% of tracked vendors
2.8
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 91% of tracked vendors
7.1
Avg CVSS Score
Higher Avg CVSS Score than 51% of tracked vendors
17.6%
In CISA KEV
Higher KEV Rate than 100% of tracked vendors

Trends Over Time

The number and severity of CVEs published that impact products developed by Crushftp over time

Volume of CVEsAvg CVSS Base Score
First CVE
Aug 30, 2017
8 years ago
Most Recent CVE
Nov 12, 2025
253 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (17 CVEs).

17 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2025-31161CRITICAL
CrushFTP 10 before 10.8.4 and 11 before 11.3.1 allows authentication bypass and takeover of the crushadmin account (unless a DMZ proxy instance is used), as exploited in the wild i
Apr 3, 20259.898YESYES
CVE-2024-4040CRITICAL
A server side template injection vulnerability in CrushFTP in all versions before 10.7.1 and 11.1.0 on all platforms allows unauthenticated remote attackers to read files from the
Apr 22, 202410.098YESYES
CVE-2025-54309CRITICAL
CrushFTP 10 before 10.8.5 and 11 before 11.3.4_23, when the DMZ proxy feature is not used, mishandles AS2 validation and consequently allows remote attackers to obtain admin access
Jul 18, 20259.897YESYES
CVE-2023-43177CRITICAL
CrushFTP prior to 10.5.1 is vulnerable to Improperly Controlled Modification of Dynamically-Determined Object Attributes.
Nov 18, 20239.888NOYES
CVE-2023-48795MEDIUM
The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows remote attackers to bypass integrity checks such that some packet
Dec 18, 20235.981NOYES
CVE-2017-14035CRITICAL
CrushFTP 8.x before 8.2.0 has a serialization vulnerability.
Aug 30, 20179.830NONO
CVE-2024-53552CRITICAL
CrushFTP 10 before 10.8.3 and 11 before 11.2.3 mishandles password reset, leading to account takeover.
Dec 10, 20249.829NONO
CVE-2025-32103MEDIUM
CrushFTP 9.x and 10.x through 10.8.4 and 11.x through 11.3.1 allows directory traversal via the /WebInterface/function/ URI to read files accessible by SMB at UNC share pathnames,
Apr 15, 20255.025NONO
CVE-2025-32102MEDIUM
CrushFTP 9.x and 10.x through 10.8.4 and 11.x through 11.3.1 allows SSRF via the host and port parameters in a command=telnetSocket request to the /WebInterface/function/ URI.
Apr 15, 20255.022NONO
CVE-2018-18288MEDIUM
CrushFTP through 8.3.0 is vulnerable to credentials theft via URL redirection.
Dec 26, 20196.122NONO
View all 17 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products17 CVEs
65%
35%
Severity distribution among all CVEs352,101 CVEs
45%
40%
11%
MediumCritical
Attack Vector
Local0 (0.0%)
Network17 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low16 (94.1%)
High1 (5.9%)
Unknown0 (0.0%)
User Interaction
None9 (52.9%)
Unknown0 (0.0%)
Required8 (47.1%)
Privileges Required
Low3 (17.6%)
High1 (5.9%)
None13 (76.5%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (17 CVEs).

CISA KEV
3 CVEs
17.6% of CVEs· 100th percentile
Metasploit
2 CVEs
11.8% of CVEs· 98th percentile
Nuclei
5 CVEs
29.4% of CVEs· 98th percentile
ExploitDB
1 CVE
5.9% of CVEs· 75th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Crushftp.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Crushftp — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Crushftp's Products

View all 2 CNAs →

Top CWEs