CyberSec.Space Logo
返回 CVE 浏览器

CVE-2025-63419

MEDIUM
6.1
CVSS Severity Score
EPSS Score0.0000%
EPSS Percentile0.00th
Published2025-11-12
Last Modified2026-06-17
Data SourcesNVD

Vulnerability Description

Cross Site Scripting (XSS) vulnerability in CrushFTP 11.3.6_48. The Web-Based Server has a feature where users can share files, the feature reflects the filename to an emailbody field with no sanitations leading to HTML Injection.

Affected Platforms (CPE)

📦
Crushftp

Crushftp

< 11.3.7_60

References & Advisories

相关漏洞威胁