Netskope Threat Labs

SERVER-WEBAPP WingFTP loginok.html remote code execution attempt

IPS-NPA

2 SIDs: 65130, 65131

Detects an attempt to exploit CVE-2025-47811, and CVE-2025-47812, a remote code execution flaw that can run code on the server in WingFTP loginok.html.