CrushFTP < 10.7.1 / 11.x < 11.1.0 Sandbox Escape (CVE-2024-4040)

critical Nessus Plugin ID 193818

Version 1.4

Apr 29, 2024, 9:06 AM

  • CVSS metrics ("CVSSv2 score" set to 10.0)
  • CVSS metrics ("CVSSv2 vector" set to "CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C")
  • CVSS metrics ("CVSSv3 score" set to 10.0)
  • CVSS metrics ("CVSSv3 vector" set to "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H")
  • CVSSv2 severity (based on CVE-2024-4040, severity increased from "Medium" to "High")

Plugin Feed: 202404290906