Back to Database
Status published
Medium
CVE-2025-47813
loginok.html in Wing FTP Server before 7.4.4 discloses the full...
Vulnerability Description
loginok.html in Wing FTP Server before 7.4.4 discloses the full local installation path of the application when using a long value in the UID cookie.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-47813
Credits & Attribution
No credits recorded in the NVD database.
References
More from wftpserver
View All →CVE-2025-47812
In Wing FTP Server before 7.4.4. the user and admin...
Critical
10
CVE-2025-47811
In Wing FTP Server through 7.4.4, the administrative web interface...
Medium
4.1
CVE-2025-27889
Wing FTP Server before 7.4.4 does not properly validate and...
Low
3.4
CVE-2020-9470
An issue was discovered in Wing FTP Server 6.2.5 before...
High
7.8
CVE-2020-8635
Wing FTP Server v6.2.3 for Linux, macOS, and Solaris sets...
High
7.8
Affected Vendor
wftpserver
View all reports →Affected Software
Wing FTP Server
Vulnerable Versions:
0
Timeline
Official Publish:
July 10th, 2025
Last Modified:
March 17th, 2026
Added to House:
July 22nd, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N