References https://www.twcert.org.tw/tw/cp-132-7927-03837-1.html https://nvd.nist.gov/vuln/detail/CVE-2024-6739 https://www.cvedetails.com/cve/CVE-2024-6739/ https://www.twcert.org.tw/newepaper/cp-151-7927-03837-3.html https://medium.com/chouhsiang/%E8%AA%AA%E6%98%8E-mail2000-mailgates-%E4%B8%89%E9%A0%85-xss-%E7%9B%B8%E9%97%9C-cve-84799d68e659 https://vuldb.com/?id.271473 https://github.com/advisories/GHSA-pvxg-5348-rxvf https://www.twcert.org.tw/en/cp-139-7928-04e8a-2.html
Related VulnerabilitiesPoCweaver-getemdslist-disclosure: Weaver E-cology getEmDsList Sensitive Information DisclosurePoCCVE-2022-44727: PrestaShop lgcookieslaw - SQL InjectionPoClaravel-clockwork-exposure: Laravel Clockwork - Sensitive Information ExposurePoClaravel-debugbar-exposure: Laravel Debugbar - Sensitive Information ExposurePoCCVE-2025-11693: Export WP Page to Static HTML <= 4.3.4 - Cookie ExposurePoCCVE-2025-58226: WordPress 3D FlipBook Plugin <= 1.16.17 - Sensitive Information ExposurePoCCVE-2025-59582: Ajax Load More < 7.6.1 - Unauthenticated Sensitive Information ExposurePoCCVE-2021-46371: AntD Admin - Sensitive Information DisclosurePoCCVE-2026-4106: HT Mega < 3.0.7 - Sensitive Information Disclosure網擎資訊|MailGates/MailAudit - 存在2個漏洞PoCCVE-2023-6592: WordPress FastDup <= 2.1.9 Sensitive Information Exposure - Directory ListingPoCCVE-2023-7165: JetBackup <= 2.0.9.7 - Sensitive Information Exposure via Directory ListingPoCCVE-2024-49357: ZimaOS <= v1.2.4 - Sensitive Information Disclosure