References https://www.twcert.org.tw/tw/cp-132-7923-46df3-1.html https://www.twcert.org.tw/tw/cp-132-8339-570fa-1.html https://isec.nfu.edu.tw/zh_tw/Legal/Administrative/%E4%BA%8C%E4%B8%80%E9%9B%B6%E9%9B%B6%E7%A7%91%E6%8A%80%E9%9B%BB%E5%AD%90%E5%85%AC%E6%96%87%E6%AA%94%E6%A1%88%E8%B3%87%E8%A8%8A%E7%AE%A1%E7%90%86%E7%B3%BB%E7%B5%B1%C2%A0%E2%80%93-Authentication-Bypass-61398089 https://tp2rc.tanet.edu.tw/node/1127 https://infosec.fcu.edu.tw/vulnerability/cve-2025-8853/ https://www.twcert.org.tw/tw/lp-132-1-14-20.html http://www.2100t.com.tw/web/profile.html
Related VulnerabilitiesPoCCVE-2026-59177: ESPHome Device Builder <1.0.10 - Unauthenticated Dashboard AccessPoCCVE-2026-81578: PaperCut NG/MF <=26.0.4 - Unauthenticated ConfigEditor Access via Tapestry Complex-DirectPoCCVE-2026-82329: JFrog Artifactory Access Blank Join Key Authentication BypassPoCCVE-2026-86206: N-able N-central - Access Control Bypass via Path Confusion and Forwarded Header SpoofingPoCCVE-2026-86426: LibreNMS <= 26.7.0 - Unauthenticated API AccessPoCjohnson-controls-default-login: Johnson Controls Frick Quantum HD Compressors - Default LoginPoCgrafana-loki-api-exposure: Grafana Loki - Unauthenticated API Access大华-智慧园区综合管理平台 updateAccessChannelByVisit SQL注入漏洞畅捷通T+系统 AccountExtendRuleController接口处存在反序列化漏洞金和OA /c6/JHSoft.Web.CostControl/Decompose/AjaxForCenterBudgetDecompose.ashx SQL 注入漏洞金和OA /c6/JHSoft.Web.CostControl/BudgetExecution/VouchUpdate.aspx SQL 注入漏洞PoCseaweedfs-unauth: SeaweedFS Filer - Unauthenticated Access天问物业ERP系统 /HM/M_Main/HC/DataGetControl.aspx SQL 注入漏洞