Vulnerability record · CVE-2022-27665 · published 3 April 2023
CVE-2022-27665: Progress ws ftp server cross-site scripting vulnerability
Progress · Ws Ftp Server
Reflected XSS (via AngularJS sandbox escape expressions) exists in Progress Ipswitch WS_FTP Server 8.6.0. This can lead to execution of malicious code and commands on the client due to improper handling of user-provided input. By inputting malicious payloads in the subdirectory searchbar or Add folder filename boxes, it is possible to execute client-side commands. For example, there is Client-Side Template Injection via subFolderPath to the ThinClient/WtmApiService.asmx/GetFileSubTree URI.
Description
Reflected XSS (via AngularJS sandbox escape expressions) exists in Progress Ipswitch WS_FTP Server 8.6.0. This can lead to execution of malicious code and commands on the client due to improper handling of user-provided input. By inputting malicious payloads in the subdirectory searchbar or Add folder filename boxes, it is possible to execute client-side commands. For example, there is Client-Side Template Injection via subFolderPath to the ThinClient/WtmApiService.asmx/GetFileSubTree URI.
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Affected products
1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.
References
| Link | Tags |
|---|---|
| https://community.progress.com/s/article/WS-FTP-Server-Critical-Vulnerability-September-2023 | Third Party Advisory |
| https://docs.ipswitch.com/WS_FTP_Server2020/ReleaseNotes/index.htm | Release NotesVendor Advisory |
| https://github.com/dievus/CVE-2022-27665 | ExploitThird Party Advisory |
| https://community.progress.com/s/article/WS-FTP-Server-Critical-Vulnerability-September-2023 | Third Party Advisory |
| https://docs.ipswitch.com/WS_FTP_Server2020/ReleaseNotes/index.htm | Release NotesVendor Advisory |
| https://github.com/dievus/CVE-2022-27665 | ExploitThird Party Advisory |
Track CVE-2022-27665 inside VULONE
Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.
Related vulnerabilities
Same products first, then exploited flaws of the same weakness class.
Source: NIST National Vulnerability Database (record CVE-2022-27665), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.