go to Center block
Upper block

TWCERT/CC Taiwan Computer Emergency Response Team/Coordination Center

:::
Date:
Font-stze:

DigiWin|EasyFlow .NET, EasyFlow - 6 Vulnerabilities

TVN ID TVN-202609011
CVE ID CVE-2026-102454
CVSS 8.6 (High) CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
7.2 (High) CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Affected Products EasyFlow .NET V6.1.x and earlier
EasyFlow .NET V6.6.19 and earlier
EasyFlow .NET V8.1.5 and earlier
Description EasyFlow .NET developed by Digiwin has an Arbitrary File Upload vulnerability. Privileged remote attackers can upload and execute web shell backdoors, thereby enabling arbitrary code execution on the server.
Solution Update to the patch version released after April 16, 2026.
Public Date 2026-09-30
Top