WellChoose Organization Portal System Absolute Path Traversal Vulnerability Allowing Arbitrary File Reading

Vulnerability

A vulnerability allowing arbitrary file reading has been identified in the WellChoose Organization Portal System, specifically in versions through IFTOP_P3_2_1_196. This vulnerability arises from an absolute path traversal issue, which enables unauthenticated remote attackers to download arbitrary system files.

Impact

Exploitation of this vulnerability allows for unauthorized access to sensitive system files, which could lead to further exploitation or information disclosure.

Remediation

Users are advised to update the Organization Portal System to version IFTOP_P3_2_1_197 or later.

Added: Sep 1, 2025, 7:22 PM
Updated: Sep 1, 2025, 7:22 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
3.3
exploitability
7.4
remediation
7.7
relevance
0.3
threat
0.0
urgency
2.9
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.