CVE-2025-47812
Wing FTP Server Improper Neutralization of Null Byte or NUL Character Vulnerability
⚠ KEVEPSS 95.3%
描述
Wing FTP Server contains an improper neutralization of null byte or NUL character vulnerability that can allow injection of arbitrary Lua code into user session files. This can be used to execute arbitrary system commands with the privileges of the FTP service (root or SYSTEM by default).
如何修補 CVE-2025-47812
OSV 沒有提供套件對應 — 請參考下方連結尋找廠商提供的建議。
CVE-2025-47812 正在被利用嗎?
是 — CVE-2025-47812 已列入 CISA Known Exploited Vulnerabilities (KEV) 清單,代表正在被實際利用,請立即修補。
受影響套件(0)
OSV 沒有提供套件對應。