PT-2026-49220 · Undefined · Undefined

Published

2026-06-15

·

Updated

2026-06-15

·

CVE-2016-20082

CVSS v3.1

6.2

Medium

VectorAV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
WordPress Plugin Abtest contains a local file inclusion vulnerability that allows unauthenticated attackers to include arbitrary files by manipulating the action parameter. Attackers can send GET requests to abtest admin.php with malicious action values to include files from the admin directory and execute arbitrary code.

Fix

Weakness Enumeration

Related Identifiers

CVE-2016-20082

Affected Products

Undefined