Fixed Intel

CISA Known Exploited Vulnerability

This vulnerability is actively exploited in the wild and listed in the CISA Known Exploited Vulnerabilities catalog.

Remediation Deadline: Mar 30, 2026

CVE-2025-47813

High
EPSS 20.4%CISA KEV
Wing FTP Server/Wing FTP Server

Description

Wing FTP Server contains a generation of error message containing sensitive information vulnerability when using a long value in the UID cookie.

EPSS — Exploit Probability

20.4%

Higher than 95.5% of all CVEs

Required Action

https://www.wftpserver.com/serverhistory.htm ; https://nvd.nist.gov/vuln/detail/CVE-2025-47813

Risk Assessment

ELEVATED
In CISA KEV

Details

Severity
High
EPSS
20.4%
CISA KEV
Yes
Ransomware
Unknown
Articles
4

Timeline

Published

Mar 16, 2026

Added to KEV

Mar 16, 2026

Remediation Due

Mar 30, 2026

Affected Product

Wing FTP Server

Wing FTP Server

View all Wing FTP Server CVEs