PT-2026-23226 · Axiomthemes · Ac Services | Hvac

Tran Nguyen Bao Khanh

·

Published

2026-03-05

·

Updated

2026-03-07

·

CVE-2026-27326

CVSS v3.1

8.1

High

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions axiomthemes AC Services | HVAC, Air Conditioning & Heating Company WordPress Theme versions through 1.2.5
Description The axiomthemes AC Services | HVAC, Air Conditioning & Heating Company WordPress Theme contains a flaw related to improper control of filename for include/require statements, specifically a PHP Local File Inclusion issue. This allows for the inclusion of local files. The vulnerable component is susceptible to exploitation through the inclusion of arbitrary files.
Recommendations Update axiomthemes AC Services | HVAC, Air Conditioning & Heating Company WordPress Theme to a version later than 1.2.5.

Fix

Weakness Enumeration

Related Identifiers

CVE-2026-27326

Affected Products

Ac Services | Hvac