CyberSec.Space Logo
Back to CVE Browser

CVE-2020-8635

HIGH
7.8
CVSS Severity Score
EPSS Score0.0540%
EPSS Percentile16.37th
PublishedMar 7, 2020
Last ModifiedNov 21, 2024

Vulnerability Description

Wing FTP Server v6.2.3 for Linux, macOS, and Solaris sets insecure permissions on installation directories and configuration files. This allows local users to arbitrarily create FTP users with full privileges, and escalate privileges within the operating system by modifying system files.

Affected Platforms (CPE)

📦
Wftpserver

Wing Ftp Server

= 6.2.3
📦
Wftpserver

Wing Ftp Server

= 6.2.3
📦
Wftpserver

Wing Ftp Server

= 6.2.3

References & Advisories

Related Vulnerabilities