go to Content
:::

TWCERT/CC Taiwan Computer Emergency Response Team/Coordination Center

:::
Date:
Font-stze:

2100 Technology|Official Document Management System - Authentication Bypass

TVN ID TVN-202508001
CVE ID CVE-2025-8853
CVSS 9.8 (Critical)
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected Products Official Document Management System version 5.0.89.0, 5.0.89.1, and 5.0.89.2
Description Official Document Management System developed by 2100 Technology has an Authentication Bypass vulnerability, allowing unauthenticated remote attackers to obtain any user's connection token and use it to log into the system as that user.
Solution Update to version 5.0.90 or later
Credit Sam Huang(CHT Security)
Public Date 2025-08-11
Top