CVE-2024-53552
10.12.2024, 02:15
CrushFTP 10 before 10.8.3 and 11 before 11.2.3 mishandles password reset, leading to account takeover.Enginsight
Vendor | Product | Version |
---|---|---|
crushftp | crushftp | 10.0.0 ≤ 𝑥 < 10.8.3 |
crushftp | crushftp | 11.0.0 ≤ 𝑥 < 11.2.3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration