Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
CVE-2025-31161 — PoC Authentication Bypass to RCE to Exploit CVE-2025-31161 | Kitploit
Tools/GitHubGitHub/dairrow/cve-2025-31161
Privilege EscalationVulnerability AnalysisExploitationWeb Application ExploitationPenetration TestingAuthenticationRemote Access ToolPayload Development
GitHubdairrow/cve-2025-31161

CVE-2025-31161

PoC Authentication Bypass to RCE to Exploit CVE-2025-31161

View Repository
138 months agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

CVE-2025-31161 is a critical severity vulnerability allowing attackers to control how user authentication is handled by CrushFTP managed file transfer (MFT) software. Affected versions: 10.0.0 through 10.8.3 and 11.0.0 through 11.3.0

Exploit summary: Remote and unauthenticated HTTP requests to CrushFTP with known usernames can be used to impersonate a user and perform actions on their behalf, including administrative actions and data retrieval.

This vulnerability has been patched and mitigated in CrushFTP versions 11.3.1+ and 10.8.4+.

This PoC was originally created to achieve RCE on one of the HTB machines. However, after writing it, I discovered that this plugin can technically be enabled, but no necessary data will be downloaded, making it impossible to interact with it. And although it can't be used for the purpose I created it for, it can still be used on any other servers for research purposes, as well as for user creation as one of the steps in the machine's progression

Download Tool