¡¾·ì϶¹«¸æ¡¿Wing FTP Server Ô¶³Ì´úÂëÖ´Ðзì϶(CVE-2025-47812)
°ä²¼¹¦·ò 2025-07-02Ò»¡¢·ì϶¸ÅÊö
·ìϼûû³Æ | Wing FTP Server Ô¶³Ì´úÂëÖ´Ðзì϶ | ||
CVE ID | CVE-2025-47812 | ||
·ì϶ÀàÐÍ | RCE | ·¢ÏÖ¹¦·ò | 2025-07-02 |
·ì϶ÆÀ·Ö | ÔÝÎÞ | ·ì϶µÈ¼¶ | ÑϳÁ |
¹¥»÷ÏòÁ¿ | ÍøÂç | ËùÐèȨÏÞ | ÎÞ |
ÀûÓÃÄÑ¶È | µÍ | Óû§½»»¥ | ²»±ØÒª |
PoC/EXP | Òѹ«¿ª | ÔÚÒ°ÀûÓà | δ·¢ÏÖ |
Wing FTP ServerÊÇÒ»¿î¿çƽ̨µÄFTP·þÎñÆ÷Èí¼þ£¬Ö§³ÖFTP¡¢FTPS¡¢SFTPºÍHTTP/SºÍ̸£¬ÌṩÎļþ¹²Ïí¡¢Ô¶³ÌÖÎÀíºÍ×Ô¶¯»¯¹¤×÷Ö°ÄÜ¡£ËüºÏÓÃÓÚÓ×ÎÒºÍÆóÒµÓû§£¬Ìṩ¸ßЧµÄÎļþ´«ÊäºÍ°²È«Ö°ÄÜ£¬Ô̺¬¶àÓû§Ö§³Ö¡¢½Ó¼û½ÚÔì¡¢ÈÕÖ¾¼Í¼ºÍ¼ÓÃÜÏνӡ£Wing FTP ServerÌṩ¼ò½àµÄWebÖÎÀí½çÃæ£¬Ò×ÓÚÅäÖúÍÊØ»¤£¬ºÏÓÃÓÚWindows¡¢LinuxºÍmacOSµÈ²Ù×÷ϵͳ¡£
2025Äê7ÔÂ2ÈÕ£¬GA»Æ½ð¼×¼¯ÍÅVSRC¼à²âµ½Wing FTP Server´æÔÚÔ¶³Ì´úÂëÖ´Ðзì϶£¨CVE-2025-47812£©£¬¹¥»÷Õß¿Éͨ¹ýÔÚÓû§ÃûÖÐ×¢ÈëNULL×Ö½ÚÈÆ¹ýÉí·ÝÑéÖ¤¡£ÎÞÐèÓÐЧƾ֤£¬¹¥»÷Õß½öÐ踽¼ÓNULL×Ö½Ú£¬¼´¿Éͨ¹ýÉí·ÝÑéÖ¤²¢»ñÈ¡ÓÐЧ»á»°£¬½ø¶øÖ´ÐÐËÁÒâ´úÂë¡£¾ßÌå²û·¢Îª£¬Óû§ÃûÔ̺¬NULL×Ö½Úʱ£¬ÏµÍ³½ö´¦ÖÃNULLǰµÄ²¿ÃÅ£¬µ¼ÖÂÈÏÖ¤ÈÆ¹ý²¢³É¹¦µÇ¼¡£¶ñÒâ´úÂëËæºó¿Éͨ¹ý»á»°Îļþ×¢Èë²¢Ö´ÐУ¬ÓÉÓÚWing FTP ServerÔÚLinuxϵͳÉÏĬÈÏÒÔrootȨÏÞÔËÐУ¬¹¥»÷ÕßÀûÓø÷ì϶¿É»ñµÃÆëÈ«µÄϵͳ½ÚÔìȨÏÞ£»ÔÚWindowsϵͳÉÏ£¬Wing FTP ServerĬÈÏÒÔSYSTEMȨÏÞÔËÐУ¬¹¥»÷ÕßͬÑù¿É»ñµÃ¸ßȨÏ޵ĽÚÔì¡£
¶þ¡¢Ó°ÏìÁìÓò
Èý¡¢°²È«´ëÊ©
3.1 Éý¼¶°æ±¾
ÏÂÔØÁ´½Ó£ºhttps://www.wftpserver.com/zh/download.htm/
3.2 һʱ´ëÊ©
ÔÝÎÞ¡£
3.3 ͨÓý¨Òé
?ÆôÓÃÇ¿ÃÜÂëÕ½Êõ²¢ÉèÖÃΪ¶¨ÆÚÅú¸Ä¡£


¾©¹«Íø°²±¸11010802024551ºÅ