EudorIACyber Intelligence
Operational monitoring Newsletter IT EN
← Back to intelligence
Technical advisory

NCSC-2026-0389 [1.01] [M/H] Kwetsbaarheid verholpen in WordPress

Official source
EudorIA operational summary

What it means

Priority 85/100

WordPress ha rimosso una vulnerabilità con CVE-2026-87902. Un attaccante può abusarne per caricare un file PHP locale al di fuori delle mappe dei temi attivi, eseguendo codice arbitrario sotto certe condizioni di configurazione del tema e del server. L'attacco potrebbe portare a accesso non autorizzato, modifiche e controllo totale. L'uso della vulnerabilità è stato segnalato in rete.

Why it matters

Per le PMI italiane, questa vulnerabilità rappresenta un rischio reale per la sicurezza dei dati e la continuità operativa. L'accesso non autorizzato può compromettere informazioni sensibili e la reputazione aziendale.

Potential operational benefits

  • Riduzione della superficie esposta a attacchi esterni
  • Maggiore controllo sulle attività di caricamento di file
  • Minimizzazione del rischio di accesso non autorizzato
  • Miglioramento della risposta ai tentativi di compromissione
Indications to confirm against the customer's technical and organisational perimeter.
Relevant controlsPatch managementSegmentazione di reteMonitoraggio / SIEMFirewall NGFW / IPSHardening
AudienceITSOCCISO
Information centre

Translation in progress

NCSC Nederland

The official content is available in the original language. The Italian version will be published once automated checks are complete.

Text acquired from the source

De ontwikkelaars van WordPress hebben een kwetsbaarheid verholpen in WordPress. Een kwaadwillende kan de kwetsbaarheid met kenmerk CVE-2026-87902 misbruiken, om zonder authenticatie een lokaal PHP-bestand buiten de actieve themamappen door WordPress te laten inladen. Onder bepaalde voorwaarden met betrekking tot het actieve thema en de serverconfiguratie kan de kwetsbaarheid leiden tot het uitvoeren van willekeurige code op de server. Hierdoor kan een kwaadwillende mogelijk toegang krijgen tot gevoelige gegevens, wijzigingen aanbrengen of verdere controle verkrijgen over de getroffen WordPress-installatie. **Update: **Openbare bronnen melden dat er misbruik van de kwetsbaarheid is waargenomen.

Source
NCSC Nederland (Paesi Bassi)
Publishing entity
NCSC Nederland
Entity type
National CSIRT
Area
Europe · NL
Original language
nl · translation in preparation
Publication
24/09/2026 11:14
MITRE ATT&CK
T1562, T1059
CVE
CVE-2026-87902
Stated country
NL
Technical scope

Affected products and versions

Verification in progress
Information not yet acquired.

The collector will check NVD and the available official vendor advisories.

Open the original source