References https://www.twcert.org.tw/tw/cp-132-10740-b2eb2-1.html https://www.tcrc.edu.tw/new/new-list/idexpert-windows-logon-agent-2 https://cc.ncku.edu.tw/p/404-1213-294235.php?Lang=zh-tw https://lic.nuk.edu.tw/p/406-1012-95931,r73.php?Lang=zh-tw https://pims.hk.edu.tw/%E3%80%90%E6%BC%8F%E6%B4%9E%E9%A0%90%E8%AD%A6%E3%80%91%E5%85%A8%E6%99%AF%E8%BB%9F%E9%AB%94%EF%BD%9Cidexpert-windows-logon-agent-%E5%AD%98%E5%9C%A82%E5%80%8B%E6%BC%8F%E6%B4%9E/ https://www.nchu.edu.tw/news-detail.php?id=61427 https://www.changingtec.com/EN/news_detail.jsp?item_id=348 https://avd.aliyun.com/detail?id=AVD-2026-2999 https://www.cvedetails.com/cve/CVE-2026-3000/ https://www.twcert.org.tw/tw/lp-132-1-2-20.html
Related VulnerabilitiesPoCvictoriametrics-vmagent-api-exposure: VictoriaMetrics vmagent - Unauthenticated Targets Exposure用友时空-KSOA /worksheet/agent_worksadd.jsp SQL 注入漏洞用友时空-KSOA /worksheet/agent_work_report.jsp SQL 注入漏洞PoCCVE-2026-71362: Adobe Commerce/Magento - Customer Session Identity SwitchPoCclaude-code-agents: Claude Code Subagent Configuration - ExposurePraisonAI AgentOS /api/agents 未授权访问漏洞(CVE-2026-40151)PoCCVE-2026-53787: Magento 2 Amasty Order Attributes < 4.0.0 - Unauthenticated Arbitrary File UploadPraisonAI /agents 未授权访问漏洞(CVE-2026-44338)PoCCVE-2026-40151: PraisonAI AgentOS - Information DisclosurePoCCVE-2024-26291: Avid NEXIS Agent - Arbitrary File ReadPoC爱数 AnyShare智能内容管理平台 /api/ServiceAgent/start_service_certainly 命令执行漏洞Windows截图工具NTLM信息泄露漏洞(CVE-2026-33829)PoCmagento-polyshell-rce: Magento PolyShell – Unauthenticated File Upload to RCE