CVE-2025-47812

⚠ KEVEPSS 92.9%

Wing FTP Server Improper Neutralization of Null Byte or NUL Character Vulnerability

加入 CISA KEV 日:2025/7/14

描述

Wing FTP Server contains an improper neutralization of null byte or NUL character vulnerability that can allow injection of arbitrary Lua code into user session files. This can be used to execute arbitrary system commands with the privileges of the FTP service (root or SYSTEM by default).

受影響套件(0)

OSV 沒有提供套件對應。