Missing Authentication Flaw in TSA by Changing Affects Database Security
CVE-2025-8861
9.3CRITICAL
What is CVE-2025-8861?
The TSA application developed by Changing is susceptible to a missing authentication vulnerability. This flaw enables unauthenticated remote attackers to gain unauthorized access, allowing them to read, alter, and delete sensitive database information. Organizations using this application should assess their security measures to mitigate potential exploitation.
Affected Version(s)
TSA 0 < 2025/2/6