Known CVE
WeGIA <= 3.6.4 - Remote Code Execution
WeGIA <= 3.6.5 contains a remote code execution caused by improper validation of backup file names in the database restoration functionality, letting attackers with administrative access execute arbitrary OS commands
CVE-2026-28409
Critical2026CVSS 10CWE-78
cve2026 · wegia · rce · vkev
Verified scans run this check after you prove you own the site.
All known CVEsView the checks catalogNational Vulnerability Database
Scan a website