Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Brad Patton

#27202de 53,635
9.3CVSS total
Vulnerabilidades · 1
PT-2026-1686
9.3
2026-01-09
WordPress · Accessally · CVE-2020-36875
**Name of the Vulnerable Software and Affected Versions** AccessAlly versions prior to 3.3.2 **Description** The AccessAlly WordPress plugin contains a flaw where the `login error` parameter in the Login Widget is treated as PHP code. This allows a remote attacker to execute arbitrary PHP code within the WordPress web server process, leading to potential remote code execution. **Recommendations** Update AccessAlly to version 3.3.2 or later.