TL;DR

CVE-2025-47813 is an actively exploited information disclosure flaw in Wing FTP, leaking the installation path of the application under specific conditions.

What happened

['CISA added a medium-severity vulnerability to its Known Exploited Vulnerabilities catalog', 'Vulnerability impacts Wing FTP and leaks server paths']

Why it matters for ops

['Leaking sensitive information can lead to further exploitation', 'Increased risk from active exploitation']

Mitigation

  • Upgrade to a patched version if available
  • Monitor logs for unauthorized access attempts

Action items

  • Review and update security patches on Wing FTP servers
  • Implement strict access controls and monitoring

Detection IOCs

  • Observation of unusual network traffic accessing Wing FTP server installation paths

Source link

https://thehackernews.com/2026/03/cisa-flags-actively-exploited-wing-ftp.html