go to Content
:::

TWCERT/CC Taiwan Computer Emergency Response Team/Coordination Center

:::
Date:
Font-stze:

WellChoose|BatchSignCS - Arbitrary File Write through Path Traversal

TVN ID TVN-202507004
CVE ID CVE-2025-7619
CVSS 8.8 (High)
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Affected Products BatchSignCS version 3.138 and earlier
Description BatchSignCS, a background Windows application developed by WellChoose, has an Arbitrary File Write vulnerability. If a user visits a malicious website while the application is running, remote attackers can write arbitrary files to any path and potentially lead to arbitrary code execution.
Solution Update to version 3.145 or later
Credit Weber Tsai、Ting-Wei Hsieh(CHT Security)
Public Date 2025-07-14
Top