go to Center block
Upper block

TWCERT/CC Taiwan Computer Emergency Response Team/Coordination Center

:::
Date:
Font-stze:

CyberTutor|NewSiteServer (NSS) - Arbitrary File Upload

TVN ID TVN-202608002
CVE ID CVE-2026-19852
CVSS 6.1 (Medium)
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Affected Products NewSiteServer (NSS)
Description NewSiteServer (NSS) developed by CyberTutor has an Arbitrary File Upload vulnerability. Unauthenticated remote attackers can upload arbitrary files, including malicious HTML files, thereby achieving effects similar to cross-site scripting.
Solution Contact the vendor to take remedial measures
Credit 林子誠
Public Date 2026-08-24
Top