CVE-2025-31161: CrushFTP - Authentication Bypass

HoneyLabs honeypots recorded 4 probes matching CVE-2025-31161 from 1 distinct source IP addresses in the last 7 days. Severity is rated critical.

Request paths that identify it

  • /WebInterface/function

Addresses probing it

Source IPProbesNetworkCountry
93.123.109.2144Techoff Srv LimitedBulgaria

Networks it comes from

ASNOrganisationProbesSource IPs
AS48090Techoff Srv Limited41

Captured requests

  • /WebInterface/function/?command=getUserList&serverGroup=MainUsers&c2f=7380
  • /WebInterface/function/?command=getUserList&serverGroup=MainUsers&c2f=3777

CVE report

CVE report

Open a specific CVE from the CVE tracker.