Forwarded from Taiwan Computer Network Crisis Management and Coordination Center: Cybersecurity Alert TWCERTCC-200-202603-00000011
[Content Description]
【WellChoose Information|Single Sign-in and Electronic Directory Service - Local File Inclusion】(CVE-2026-3826, CVSS: 9.8) An unauthenticated remote attacker could exploit this vulnerability to execute arbitrary code on the server.
[Affected Platforms]
Single Sign-in and Electronic Directory Service versions prior to IFTOP_P4_181 (excluding IFTOP_P4_181)
[Recommended Actions]
Update to IFTOP_P4_181 (including IFTOP_P4_181) or later
[References]
1. https://www.twcert.org.tw/tw/cp-132-10755-94136-1.html