CVE-2023-43177
CrushFTP prior to 10.5.1 is vulnerable to Improperly Controlled Modification of Dynamically-Determined Object Attributes.
- Affected products
- Crushftp
- Crushftp
- < 10.5.2
- Fix
- Available
- CVSS 3.1
- 9.8 CRITICAL
- EPSS
- 81.8% (100th percentile)
- Weakness
- CWE-913
- NVD status
- Modified
- Published
- 2023-11-17
CVE-2023-43177 at NVD
6 known exploits for CVE-2023-43177
Proof-of-concept code and exploit modules indexed by Sploitus