[remote] Wing FTP Server 7.4.3 - Unauthenticated Remote Code Execution (RCE)
Wing FTP Server 7.4.3及以下版本存在未认证远程代码执行漏洞(CVE-2025-47812),攻击者可通过注入NULL字节和Lua代码到用户名参数中,在访问特定功能时触发代码执行,获得服务器高权限(Linux为root,Windows为SYSTEM)。
You must login to view this content
You must login to view this content