CyberSec.Space Logo
CVEブラウザに戻る

CVE-2019-25267

HIGH
7.8
CVSS Severity Score
EPSS Score0.1950%
EPSS Percentile27.63th
Published2026年2月5日
Last Modified2026年2月18日

Vulnerability Description

Wing FTP Server 6.0.7 contains an unquoted service path vulnerability that allows local attackers to potentially execute arbitrary code with elevated system privileges. Attackers can exploit the unquoted binary path in the service configuration to inject malicious executables that will be launched with LocalSystem permissions.

Affected Platforms (CPE)

📦
Wftpserver

Wing Ftp Server

= 6.0.7

References & Advisories

関連する脆弱性情報