Wing FTP Server v6.2.3 for Linux, macOS, and Solaris sets insecure permissions on installation directories and configuration files. This allows local users to arbitrarily create FTP users with full privileges, and escalate privileges within the operating system by modifying system files.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.hooperlabs.xyz/disclosures/cve-2020-8635.php |
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2020-03-06T23:33:06
Updated: 2024-08-04T10:03:46.253Z
Reserved: 2020-02-05T00:00:00
Link: CVE-2020-8635
Vulnrichment
No data.
NVD
Status : Modified
Published: 2020-03-07T00:15:13.303
Modified: 2024-11-21T05:39:09.830
Link: CVE-2020-8635
Redhat
No data.