Loading
A Remote Code Execution vulnerability exists in the gVectors wpDiscuz plugin 7.0 through 7.0.4 for WordPress, which allows unauthenticated users to upload any type of file, including PHP files via the wmuUploadFiles AJAX action.
Use CWE-434, Gvectors vendor hub and Wpdiscuz product page to widen CVE-2020-24186 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2026-22193, CVE-2026-22192 and CVE-2026-22199 for nearby disclosures in the same product family.