References https://www.twcert.org.tw/newepaper/cp-151-6887-6ed4f-3.html https://www.twcert.org.tw/en/cp-139-6891-1336f-2.html https://nvd.nist.gov/vuln/detail/CVE-2022-39060 https://cve.imfht.com/detail/CVE-2022-46306?lang=en https://www.twcert.org.tw/tw/lp-132-1-8-60.html https://db.gcve.eu/search?vendor=ChangingTec&product=MegaServiSignAdapter https://app.opencve.io/cve/?vendor=changingtec&product=megaservisignadapter https://www.twcert.org.tw/en/cp-139-6890-86f8a-2.html
Related VulnerabilitiesPoCtp-link-wr840n-auth-bypass: TP-LINK WR840N v6 up to 0.9.1 4.16 - Improper AuthenticationPoCCVE-2026-4987: SureForms <= 2.5.2 - Unauthenticated Payment Amount Validation Bypass via form_id技嘉科技|Gigabyte Control Center - Improper Access ControlPoCCVE-2026-32230: Uptime-Kuma < v1.23.0 - Improper Access ControlPoCCVE-2026-48710: Starlette - Improper Validation of Unsafe Equivalence in Input基點資訊|CelloOS - Improper Access ControlPoCCVE-2021-22017: vCenter Server - Improper Access ControlPoCollama-improper-authorization: Ollama - Improper AuthorizationPoCCVE-2021-20617: Acmailer - Improper Access Control to OS Command InjectionPoCCVE-2025-12480: Triofox - Improper Access ControlPoCCVE-2020-13935: Apache Tomcat WebSocket Frame Payload Length Validation Denial of ServicePoCCVE-2018-16668: CirCarLife <4.3 - Improper AuthenticationPoCCVE-2018-16670: CirCarLife <4.3 - Improper Authentication