A Zero-Day Vulnerability in CrushFTP Results in Server Compromise

Threat Level – Red | Vulnerability Report
Download PDF

 The discovery of an actively exploited zero-day vulnerability, CVE-2024-4040, in CrushFTP is concerning. This vulnerability allows unauthenticated attackers to bypass the user’s virtual file system (VFS) and access system files for download.

Threat Level – Red | Vulnerability Report

What’s new on HivePro

Get through updates and upcoming events, and more directly in your inbox