References https://www.twcert.org.tw/tw/cp-132-10642-3b808-1.html https://www.tcrc.edu.tw/new/new-list/prismx-mx100-ap-controller-use-of-hard-coded-credentials https://cc.ncku.edu.tw/p/404-1213-292836.php?Lang=zh-tw https://www.appsecure.security/vulnerability-database/cve-2026-1221/ https://www.nchu.edu.tw/news-detail.php?id=61193 https://www.gm7.org/archives/32895 https://avd.aliyun.com/detail?id=AVD-2026-1222 https://net.nthu.edu.tw/netsys/en:mailing:announcement:20260123_06 https://cloud.tencent.com/developer/article/2630116 https://www.twcert.org.tw/en/cp-139-10643-2f8d7-2.html https://www.sentinelone.com/vulnerability-database/cve-2026-1221/ https://www.cve.org/CVERecord?id=CVE-2026-1223
Related Vulnerabilities畅捷通T+系统 AccountExtendRuleController接口处存在反序列化漏洞JeeWMS cgReportController.do wm_wendubb SQL 注入漏洞JeeWMS /rest/../iconController.do 文件上传漏洞JeeWMS /rest/wmSttInGoodsController SQL 注入漏洞Wifi-soft UniBox Controller /authentication/test_userlogin.php 命令执行漏洞PoCCVE-2026-2699: Progress ShareFile Storage Zones Controller - Authentication BypassProgress ShareFile Storage Zones Controller /ConfigService/Admin.aspx 权限绕过漏洞(CVE-2026-2699)tianti /tianti-module-admin/ueditor/controller.jsp 服务器端请求伪造漏洞PoC友数聚科技-CPAS审计管理系统V4 /cpasm4/static/..;/mobileUploadPictureController/doDownLoadPicFile 文件读取漏洞东胜物流软件 IPLimitController SQL注入漏洞ERPNext /api/method/erpnext.controllers.queries.get_blanket_orders SQL 注入漏洞(CVE-2025-52040)大蚂蚁 (BigAnt) 即时通讯系统 PublicController 任意文件读取漏洞九麒科技 大蚂蚁通讯系统 DispersedOrgController 文件上传限制不当漏洞