go to Center block
Upper block

TWCERT/CC Taiwan Computer Emergency Response Team/Coordination Center

:::
Date:
Font-stze:

CAYIN Technology|CAYIN CMS-WS/CMS-SE - Missing Authentication

TVN ID TVN-202608009
CVE ID CVE-2026-80234
CVSS 5.3 (Medium)
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Affected Products CMS-WS version 1.0.25336 and earlier
CMS-SE version 11.0.25336 and earlier
Description CAYIN CMS-WS and CMS-SE developed by CAYIN Technology have a Missing Authentication vulnerability. Unauthenticated remote attackers can obtain media file lists via specific functionality, resulting in partial information disclosure.
Solution Update CMS-WS to version 1.0.26198 or later
Update CMS-SE to version 11.0.26198 or later
Credit Jing-Xun Sun
Public Date 2026-08-26
Top