piyokango[verified]@piyokangoActive Exploitation
CISA confirmed CVE-2025-47813 is actively exploited in the wild; the vulnerability is an information disclosure in Wing FTP Server, but no PoC or exploit code are publicly available.
Criminal IP[verified]@CriminalIP_USActive Exploitation
The post confirms CVE-2025-47813 is being actively exploited in the wild, detailing a path‑leak to RCE chain with CVE-2025-47812, and highlights the exposure of internet‑accessible Wing FTP services.
キタきつね[verified]@foxbookActive Exploitation
CISA added CVE‑2025‑47813, an information‑leak flaw in Wing FTP Server, to its catalog of known exploited vulnerabilities, confirming its use in real‑world attacks.
Criminal IP Japan[verified]@CriminalIP_JPActive Exploitation
CVE‑2025‑47813 was discovered in Wing FTP Server, actively exploited in the wild, and added to KEV; the vulnerability causes local path exposure via UID cookie handling, but no patch or PoC is provided.
nin_tech[verified]@nin_tech_xActive Exploitation
CISA links CVE-2025-47813 to its known‑exploited vulnerabilities catalog, confirming that it is being exploited in the wild, but the statement contains no proof‑of‑concept, exploit code, patch, or technical details.
nin_tech[verified]@nin_tech_xActive Exploitation
CISA confirms that CVE-2025-47813 in Wing FTP Server is actively exploited and has been added to the Known Exploited Vulnerabilities catalog.
Machina Record[verified]@MachinaRecordActive Exploitation
CISA has confirmed exploitation of the Wing FTP vulnerability (CVE-2025-47813) in the wild, with no PoC, exploit, patch or technical detail disclosed.
DFIR Radar[verified]@DFIR_RadarActive Exploitation
The tweet announces that CISA has catalogued CVE-2025-47813 as a key active exploit, noting a path disclosure flaw that leads to a patched RCE bug and urging federal agencies to remediate within two weeks.