Arbitrary File Reading Vulnerability in Organization Portal System by WellChoose
CVE-2025-8909
7.1HIGH
What is CVE-2025-8909?
The Organization Portal System developed by WellChoose is prone to an Arbitrary File Reading vulnerability. This issue enables remote attackers, holding standard user privileges, to exploit absolute path traversal flaws, thereby gaining unauthorized access to read and download arbitrary system files. The implications of this vulnerability can lead to significant data exposure and potential further exploitation if sensitive files are accessed.
Affected Version(s)
Organization Portal System 0