CVE-2025-32103
MEDIUMDescription
CrushFTP 9.x and 10.x through 10.8.4 and 11.x through 11.3.1 allows directory traversal via the /WebInterface/function/ URI to read files accessible by SMB at UNC share pathnames, bypassing SecurityManager restrictions.
Is your site exposed to CVE-2025-32103?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| crushftp | crushftp |
References
Frequently Asked Questions
What is CVE-2025-32103? +
How severe is CVE-2025-32103? +
What products are affected by CVE-2025-32103? +
How do I check if I'm vulnerable to CVE-2025-32103? +
Related Vulnerabilities
Parsec is a cloud-based application for simple and cryptographically secure file sharing. The application does not sanitize the workspace name, …
An improper input validation vulnerability has been discovered that could allow an adversary to inject a UNC path via a …
CrushFTP 10 before 10.8.3 and 11 before 11.2.3 mishandles password reset, leading to account takeover.
CrushFTP 10 before 10.8.4 and 11 before 11.3.1 allows authentication bypass and takeover of the crushadmin account (unless a DMZ …
A server side template injection vulnerability in CrushFTP in all versions before 10.7.1 and 11.1.0 on all platforms allows unauthenticated …
CrushFTP 10 before 10.8.5 and 11 before 11.3.4_23, when the DMZ proxy feature is not used, mishandles AS2 validation and …