CISA warned U.S. government agencies to secure their Wing FTP Server instances against an actively exploited vulnerability that may be chained in remote code execution attacks.
CISA adds Wing FTP CVE-2025-47813 to KEV after active exploitation, exposing server paths and aiding attacks; patch by March 30, 2026.
A vulnerability was added to the database, and it was found to be exploited in the wild.
CISA warns that a Wing FTP vulnerability leading to the disclosure of the full local installation path has been exploited in attacks.
return ""; // if not handeled above then let the HTTP server send the reply itself (server files stored in /var/www/html directory or send 404 reply) ...
Some results have been hidden because they may be inaccessible to you
Show inaccessible results