Forwarded by Taiwan Computer Network Crisis Management and Coordination Center (TWCERTCC-200-202508-00000010)
[Description]
[WellChoose Information | Single Sign-On and Electronic Directory Service System - Local File Inclusion] (CVE-2025-8913, CVSS: 9.8) The Single Sign-On and Electronic Directory Service System developed by WellChoose Information contains a Local File Inclusion vulnerability. An unauthenticated remote attacker could exploit this vulnerability to execute arbitrary code on the server.
[Affected Platforms]
Single Sign-On and Electronic Directory Service System versions IFTOP_P3_2_1_196 and earlier
[Recommended Action]
Update to versions IFTOP_P3_2_1_197 and later
[References]
https://www.twcert.org.tw/tw/cp-132-10321-3cae5-1.html