CISA warned U.S. government agencies to secure their Wing FTP Server instances against an actively exploited vulnerability that may be chained in remote code execution attacks.
A vulnerability was added to the database, and it was found to be exploited in the wild.
CISA adds Wing FTP CVE-2025-47813 to KEV after active exploitation, exposing server paths and aiding attacks; patch by March 30, 2026.
CISA warns that a Wing FTP vulnerability leading to the disclosure of the full local installation path has been exploited in attacks.
Discover the hidden feature in DietPi that allows you to automate your Raspberry Pi setup with a single script.
Spread the loveThe U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued a critical alert regarding a newly identified vulnerability in Wing FTP Server, designated as CVE-2025-47813.
return ""; // if not handeled above then let the HTTP server send the reply itself (server files stored in /var/www/html directory or send 404 reply) ...