ZeroHour

CVE-2020-8635

PoC
CVSS 3.1
7.8 high
EPSS
<1%p55
Published
()
Modified
Description

Wing FTP Server v6.2.3 for Linux, macOS, and Solaris sets insecure permissions on installation directories and configuration files. This allows local users to arbitrarily create FTP users with full privileges, and escalate privileges within the operating system by modifying system files.

Vendors
wftpserver
Products
wing ftp server
Weakness
CWE-732
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.