Loading
CrushFTP 10 before 10.8.3 and 11 before 11.2.3 mishandles password reset, leading to account takeover.
Use CWE-640, Crushftp vendor hub and Crushftp product page to widen CVE-2024-53552 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2025-31161, CVE-2024-4040 and CVE-2025-54309 for nearby disclosures in the same product family.