References https://www.twcert.org.tw/tw/cp-132-7774-fbd01-1.html https://www.twcert.org.tw/newepaper/cp-151-7774-fbd01-3.html https://www.twcert.org.tw/en/cp-139-7775-8b991-2.html https://www.cve.org/CVERecord?id=CVE-2024-4300 https://cvefeed.io/vuln/detail/CVE-2024-4300 https://cve.imfht.com/product/FS-EZViewer(Web)?lang=en https://www.twcert.org.tw/en/lp-139-2-15-20.html
Related VulnerabilitiesPoCflowise-chatflows-exposure: Flowise AI - Unauthenticated Chatflows API ExposurePoClangflow-api-exposure: Langflow - Unauthenticated API ExposurePoCCVE-2026-42221: Nginx UI <= 2.3.7 - Unauthenticated Installer ExposurePoCgrafana-loki-api-exposure: Grafana Loki - Unauthenticated API AccessPoCvictoriametrics-vmagent-api-exposure: VictoriaMetrics vmagent - Unauthenticated Targets ExposurePoCmaven-settings-xml-exposure: Apache Maven settings.xml Credentials - ExposurePoCnuget-config-exposure: NuGet.config Package Source Credentials - ExposurePoCpypirc-credentials-exposure: Python .pypirc Credentials - ExposurePoCfastly-debug-headers: Fastly CDN Debug Headers ExposurePoCclaude-code-agents: Claude Code Subagent Configuration - ExposurePoCclaude-settings-exposure: Claude Code Project Settings ExposurePoCCVE-2026-59801: 9Router - Unauthenticated LLM Provider API ExposurePoCprodigy-panel: Prodigy Annotation Tool - Unauthenticated Exposure