


Perceptive Security
SOC/SIEM Consultancy

Police Statistics Database System developed by Gotac has a Missing Authentication vulnerability, allowing unauthenticated remote attackers to read, modify, and …
Published:
15 January 2026 at 23:00:00
Alert date:
16 January 2026 at 16:17:23
Source:
nvd.nist.gov
Database & Storage, Identity & Access, Critical Infrastructure
CVE-2026-1019 affects the Police Statistics Database System developed by Gotac, containing a critical Missing Authentication vulnerability. The flaw allows unauthenticated remote attackers to access the database through a specific functionality. Attackers can perform read, modify, and delete operations on database contents without any authentication requirements. This represents a severe security risk for law enforcement data integrity and confidentiality. The vulnerability has been assigned high criticality due to the sensitive nature of police statistics data.
Technical details
Mitigation steps:
Affected products:
Police Statistics Database System
Gotac
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-1019
https://www.twcert.org.tw/en/cp-139-10638-0e44b-2.html
https://www.twcert.org.tw/tw/cp-132-10637-3e4b3-1.html
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
