CVE-2012-4729

medium
Published 2012-10-26 · Modified 2026-04-29
CVSS v3
CVSS v2
6.8
VIR risk
6.8

Description

Wing FTP Server before 4.1.1 allows remote authenticated users to cause a denial of service (daemon crash) via two zip commands.

Predictions

Exploit likelihood
20%
Patch ETA

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

No vendor mitigations ingested yet for this CVE. The mitigation-content worker queues fetches as references arrive — check back in a few minutes, or see the references list below.

Application impact

VendorProductVersionsFixed
wftpserverwing_ftp_server{"endIncluding":"4.0.9"}
wftpserverwing_ftp_server1.1
wftpserverwing_ftp_server1.2
wftpserverwing_ftp_server1.3
wftpserverwing_ftp_server1.4
wftpserverwing_ftp_server1.5
wftpserverwing_ftp_server1.6
wftpserverwing_ftp_server2.0
wftpserverwing_ftp_server2.1
wftpserverwing_ftp_server2.3
wftpserverwing_ftp_server2.4
wftpserverwing_ftp_server3.0.0
wftpserverwing_ftp_server3.1.0
wftpserverwing_ftp_server3.1.2
wftpserverwing_ftp_server3.2.0
wftpserverwing_ftp_server3.2.4
wftpserverwing_ftp_server3.2.8
wftpserverwing_ftp_server3.3.0
wftpserverwing_ftp_server3.3.4
wftpserverwing_ftp_server3.3.5
wftpserverwing_ftp_server3.4.0
wftpserverwing_ftp_server3.4.1
wftpserverwing_ftp_server3.4.2
wftpserverwing_ftp_server3.4.3
wftpserverwing_ftp_server3.4.5
wftpserverwing_ftp_server3.5.0
wftpserverwing_ftp_server3.5.1
wftpserverwing_ftp_server3.5.2
wftpserverwing_ftp_server3.6.0
wftpserverwing_ftp_server3.6.1
wftpserverwing_ftp_server3.6.6
wftpserverwing_ftp_server3.6.8
wftpserverwing_ftp_server3.7.2
wftpserverwing_ftp_server3.7.5
wftpserverwing_ftp_server3.8.0
wftpserverwing_ftp_server3.8.5
wftpserverwing_ftp_server3.8.6
wftpserverwing_ftp_server3.8.7
wftpserverwing_ftp_server3.8.8
wftpserverwing_ftp_server3.8.9
wftpserverwing_ftp_server4.0.1
wftpserverwing_ftp_server4.0.2
wftpserverwing_ftp_server4.0.3
wftpserverwing_ftp_server4.0.5
wftpserverwing_ftp_server4.0.6
wftpserverwing_ftp_server4.0.8

References

CWEs

CWE-119

Verify integrity in audit chain (admin only). AS-IS.