Organization Portal System developed by WellChoose has an Arbitrary File Reading vulnerability, allowing remote attackers with regular privileges to exploit Absolute Path Traversal to download arbitrary system files.
Metrics
Affected Vendors & Products
References
History
Wed, 13 Aug 2025 20:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Wed, 13 Aug 2025 09:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Organization Portal System developed by WellChoose has an Arbitrary File Reading vulnerability, allowing remote attackers with regular privileges to exploit Absolute Path Traversal to download arbitrary system files. | |
Title | WellChoose|Organization Portal System - Arbitrary File Reading through Path Traversal | |
Weaknesses | CWE-36 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: twcert
Published: 2025-08-13T09:03:13.164Z
Updated: 2025-08-13T19:57:57.085Z
Reserved: 2025-08-13T06:42:39.771Z
Link: CVE-2025-8909

Updated: 2025-08-13T18:01:22.207Z

Status : Awaiting Analysis
Published: 2025-08-13T09:15:29.723
Modified: 2025-08-13T17:33:46.673
Link: CVE-2025-8909

No data.