https://reddit.com/r/netsec/comments/1jopz93/crushftp_authentication_bypass_cve20252825/: CrushFTP Authentication Bypass - CVE-2025-2825 — ProjectDiscovery Blog
Published Apr 1, 2025
·Updated
Affected Software
1 affected component
CrushFTP Crushftp
Frequently Asked Questions
1
What is the severity of CVE-2025-2825?
CVE-2025-2825 has been rated as a critical vulnerability due to its potential for unauthorized access.
2
How do I fix CVE-2025-2825?
To fix CVE-2025-2825, update your CrushFTP software to the latest version where the vulnerability is patched.
3
What systems are affected by CVE-2025-2825?
CVE-2025-2825 affects all versions of CrushFTP prior to the security patch release.
4
What type of vulnerability is CVE-2025-2825?
CVE-2025-2825 is classified as an authentication bypass vulnerability.
5
Is there a workaround for CVE-2025-2825?
While the best solution is to apply the patch, additional security measures like firewall rules can provide temporary protection.