CVE-2025-32103
MEDIUMDescription
CrushFTP 9.x and 10.x through 10.8.4 and 11.x through 11.3.1 allows directory traversal via the /WebInterface/function/ URI to read files accessible by SMB at UNC share pathnames, bypassing SecurityManager restrictions.
Is your site exposed to CVE-2025-32103?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| crushftp | crushftp |
References
Frequently Asked Questions
What is CVE-2025-32103? +
How severe is CVE-2025-32103? +
What products are affected by CVE-2025-32103? +
How do I check if I'm vulnerable to CVE-2025-32103? +
Related Vulnerabilities
Parsec is a cloud-based application for simple and cryptographically secure file sharing. The application does not sanitize the workspace name, …
An improper input validation vulnerability has been discovered that could allow an adversary to inject a UNC path via a …
CrushFTP 10 before 10.8.4 and 11 before 11.3.1 allows authentication bypass and takeover of the crushadmin account (unless a DMZ …
A server side template injection vulnerability in CrushFTP in all versions before 10.7.1 and 11.1.0 on all platforms allows unauthenticated …
CrushFTP 10 before 10.8.3 and 11 before 11.2.3 mishandles password reset, leading to account takeover.
CrushFTP 10 before 10.8.5 and 11 before 11.3.4_23, when the DMZ proxy feature is not used, mishandles AS2 validation and …