Medium severity5.9NVD Advisory· Published Dec 24, 2018· Updated Jun 17, 2026
CVE-2018-20424
CVE-2018-20424
Description
Discuz! DiscuzX 3.4, when WeChat login is enabled, allows remote attackers to delete the common_member_wechatmp data structure via an ac=unbindmp request to plugin.php.
Affected products
1Patches
Vulnerability mechanics
References
1- gitee.com/ComsenzDiscuz/DiscuzX/issues/IPRUInvdExploitIssue TrackingThird Party Advisory
News mentions
0No linked articles in our index yet.