Quanta Computer QOCA aim AI Medical Cloud Platform Missing Authorization Vulnerability Allowing File Access Modification

Vulnerability

A missing authorization vulnerability has been identified in the QOCA aim AI Medical Cloud Platform by Quanta Computer, affecting version 2.7.5 and earlier. This vulnerability allows authenticated remote attackers to alter specific parameters of network packets, thereby enabling certain system functions to access and modify files belonging to other users.

Impact

Exploitation of this vulnerability could lead to unauthorized access and modification of user files on the QOCA aim AI Medical Cloud Platform.

Remediation

Users are advised to update to version 2.7.6 or later.

Added: Jan 5, 2026, 8:20 AM
Updated: Jan 5, 2026, 8:20 AM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
5.2
remediation
7.7
relevance
1.9
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.