Description
TSA developed by Changing has a Missing Authentication vulnerability, allowing unauthenticated remote attackers to read, modify, and delete database contents.
Problem types
CWE-306 Missing Authentication for Critical Function
Product status
Any version before 2025/2/6
References
www.twcert.org.tw/tw/cp-132-10360-012e7-1.html
www.twcert.org.tw/en/cp-139-10361-4ce04-2.html