CVE-2024-4040
Unauthenticated arbitrary file read and remote code execution in CrushFTP
Basic Information
- CVE State
- PUBLISHED
- Reserved Date
- April 22, 2024
- Published Date
- April 22, 2024
- Last Updated
- February 04, 2025
- Vendor
- CrushFTP
- Product
- CrushFTP
- Description
- A server side template injection vulnerability in CrushFTP in all versions before 10.7.1 and 11.1.0 on all platforms allows unauthenticated remote attackers to read files from the filesystem outside of the VFS Sandbox, bypass authentication to gain administrative access, and perform remote code execution on the server.
CVSS Scores
CVSS v3.1
Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
SSVC Information
- Exploitation
- active
- Automatable
- Yes
- Technical Impact
- total
References
Known Exploited Vulnerability Information
Source | Added Date |
---|---|
CISA | 2024-04-24 00:00:00 UTC |
Scanner Integrations
Scanner | URL | Date Detected |
---|---|---|
Nuclei | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2024/CVE-2024-4040.yaml | 2025-04-26 00:00:00 UTC |
Potential Proof of Concepts
Warning: These PoCs have not been tested and could contain malware. Use at your own risk.
entroychang/CVE-2024-4040
Type: github • Created: 2024-07-05 05:46:56 UTC • Stars: 3
1ncendium/CVE-2024-4040
Type: github • Created: 2024-05-13 17:33:36 UTC • Stars: 0
gotr00t0day/CVE-2024-4040
Type: github • Created: 2024-05-03 23:29:53 UTC • Stars: 8
jakabakos/CVE-2024-4040-CrushFTP-File-Read-vulnerability
Type: github • Created: 2024-05-01 14:42:39 UTC • Stars: 3
Mohammaddvd/CVE-2024-4040
Type: github • Created: 2024-04-30 13:27:34 UTC • Stars: 3
Stuub/CVE-2024-4040-SSTI-LFI-PoC
Type: github • Created: 2024-04-25 19:51:38 UTC • Stars: 57
rbih-boulanouar/CVE-2024-4040
Type: github • Created: 2024-04-25 04:45:38 UTC • Stars: 13
airbus-cert/CVE-2024-4040
Type: github • Created: 2024-04-23 09:31:29 UTC • Stars: 47