VYPR
High severity7.8NVD Advisory· Published Mar 7, 2020· Updated Jun 17, 2026

CVE-2020-8635

CVE-2020-8635

Description

Wing FTP Server v6.2.3 for Linux, macOS, and Solaris sets insecure permissions on installation directories and configuration files. This allows local users to arbitrarily create FTP users with full privileges, and escalate privileges within the operating system by modifying system files.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

5
  • cpe:2.3:a:wftpserver:wing_ftp_server:6.2.3:*:*:*:*:linux:*:*+ 2 more
    • cpe:2.3:a:wftpserver:wing_ftp_server:6.2.3:*:*:*:*:linux:*:*
    • cpe:2.3:a:wftpserver:wing_ftp_server:6.2.3:*:*:*:*:macos:*:*
    • cpe:2.3:a:wftpserver:wing_ftp_server:6.2.3:*:*:*:*:solaris:*:*
  • Wing FTP Server/Wing FTP Serverdescription
  • Range: <=6.2.3

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.