CVE-2023-37881: Weak Access Control between Domains in Wing FTP Server <= 7.2.0
Published Sep 12, 2023
·Updated
Weak access control in Wing FTP Server (Admin Web Client) allows for privilege escalation.This issue affects Wing FTP Server: <= 7.2.0.
Affected Software
1 affected component
Wftpserver Wing Ftp Server<=7.2.0
Event History
Sep 12, 2023
CVE Published
via MITRE·08:14 AM
Data Sourced
via MITRE·08:14 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2023-37881?
CVE-2023-37881 is a vulnerability in Wing FTP Server (Admin Web Client) that allows for privilege escalation due to weak access control.
2
What is the severity of CVE-2023-37881?
CVE-2023-37881 has a severity rating of 8.8 (high).
3
Which version of Wing FTP Server is affected by CVE-2023-37881?
Wing FTP Server version 7.2.0 and below are affected by CVE-2023-37881.
4
How can CVE-2023-37881 be fixed?
To fix CVE-2023-37881, make sure to update Wing FTP Server to a version that is higher than 7.2.0.
5
Where can I find more information about CVE-2023-37881?
You can find more information about CVE-2023-37881 at the following link: https://www.wftpserver.com/serverhistory.htm