WellChoose Organization Portal System Arbitrary File Reading Vulnerability

Vulnerability

A vulnerability allowing arbitrary file reading has been identified in the WellChoose Organization Portal System, specifically in versions through IFTOP_P3_2_1_196. This vulnerability arises from absolute path traversal, which remote attackers with regular privileges can exploit to download arbitrary system files.

Impact

Exploitation of this vulnerability allows for unauthorized access to sensitive system files, which could lead to further exploitation or disclosure of confidential information.

Remediation

Users are advised to update to version IFTOP_P3_2_1_197 or later.

Added: Sep 1, 2025, 7:22 PM
Updated: Sep 1, 2025, 7:22 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
3.3
exploitability
5.2
remediation
7.7
relevance
0.3
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.