:::

[Security Vulnerability Alert] e-Excellence | U-Office Force - Insecure Deserialization

Type:行政公告
Pubish Date:2026/03/11 至 2026/09/11
Visitors:488

Forwarded from Taiwan Computer Network Crisis Management and Coordination Center: Cybersecurity Alert TWCERTCC-200-202603-00000003

[Content Description]
【e-Excellence|U-Office Force - Insecure Deserialization】(CVE-2026-3422, CVSS: 98) e-Excellence U-Office Force contains an Insecure Deserialization vulnerability. An unauthenticated remote attacker can execute arbitrary code on the server by sending malicious serialized content.

[Affected Platforms]
U-Office Force versions 29.50 and earlier

[Recommended Action]
Please update to version 29.50SP1 or later.

[References]
1. https://www.twcert.org.tw/tw/cp-132-10742-45b13-1.html

相關附件

※為降低附件原始檔案遭搜尋引擎索引之風險,公告附件將由瀏覽器先下載至本機暫存後再開啟。請確認使用環境安全後,再決定是否開啟附件。

返回列表