PoC Archive PoC Archive

tag

Ftp-Server

Critical
Wing FTP Server NULL-Byte Lua Injection Unauthenticated RCE (CVE-2025-47812)
CVE-2025-47812· Wing FTP Server, web administration/login interface (loginok.html, session mechanism) patched
Critical
CrushFTP AS2 Header Authentication Bypass (CVE-2025-54309)
CVE-2025-54309· CrushFTP server, AS2 (Applicability Statement 2) authentication module / web admin interface patched