Loading
Generated remediation guidance and an executive summary. No account required.
Wing FTP Server 6.3.8 contains a remote code execution vulnerability in its Lua-based web console that allows authenticated users to execute system commands. Attackers can leverage the console to send POST requests with malicious commands that trigger operating system execution through the os.execute() function.
Use CWE-78, Wftpserver vendor hub and Wing Ftp Server product page to widen CVE-2020-37032 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2025-47812, CVE-2025-47813 and CVE-2019-25267 for nearby disclosures in the same product family.