Criminal IP[verified]@CriminalIP_USActive Exploitation
CVE‑2025‑47813 is actively being exploited and reported by CISA KEV, with a chainable RCE via CVE‑2025‑47812, yet no patch or PoC is disclosed.
Criminal IP Japan[verified]@CriminalIP_JPActive Exploitation
CVE‑2025‑47813 in Wing FTP Server has been actively exploited, exposing local install paths through UID cookie processing and potentially enabling code execution when combined with CVE‑2025‑47812; no PoC, exploit code, or patch information is provided.
Techzine@techzineActive Exploitation
CISA reports that CVE-2025-47813 and CVE-2025-47812 are actively being exploited, while the vendor has issued a patch in version 7.4.4.
sckull@sckull_Disclosure
The post discloses a Remote Code Execution vulnerability in Wing FTP Server (CVE-2025-47812) and a privileged escalation via tarfile misuse (CVE-2025-4517), providing initial access credentials and linking to a post for further details.
Vladimir Cageyv Samoylov@cageyvdevPatch
The post announces the Wing FTP RCE (CVE‑2025‑47812) with a high severity score and urges immediate patching, without mentioning PoC, exploit tools, or active exploitation.
Marc-Frédéric Gomez@marcfredericgoActive Exploitation
The episode reports confirmed active exploitation of multiple CVEs across several platforms, highlights the availability of patches, and includes PoC details for a non‑CVE project.
Techzine NL-BE@TechzinenlbeActive Exploitation
CISA warns that Wing FTP Server vulnerabilities CVE-2025-47813 and CVE-2025-47812 are actively exploited, but the latest patch 7.4.4 addresses the issue.
ARCHIE@archie_shamActive Exploitation
The tweet announces that CISA has added CVE-2025-47813 to the KEV catalog—signifying active exploitation—and urges users to apply the v7.4.4 patch.