Content:
Forwarded from Taiwan Computer Emergency Response Team/Coordination Center Security Alert TWCERTCC-200-202608-00000020
【Think Software Technology|EFence - Arbitrary File Upload】(CVE-2026-80235, CVSS: 9.8) An unauthenticated remote attacker can upload and execute web webshells, thereby executing arbitrary code on the server side.
【Think Software Technology|EFence - Arbitrary File Upload】(CVE-2026-80237, CVSS: 8.8) An authenticated remote attacker can upload and execute web webshells, thereby executing arbitrary code on the server side.
Affected Platforms:
Recommendations:
References:
-
Computer and Communication Center
Network System Division Respectfully