PT-2026-79005 · Wegia · Wegia

CVE-2026-76633

·

Published

2026-08-20

·

Updated

2026-08-20

CVSS v4.0

8.6

High

VectorAV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions WeGIA versions prior to 3.9.2
Description An authorization bypass exists in the password change flow. Authenticated users can change their account password without providing current credentials by exploiting the unconditional exclusion of the alterarSenha() function from permission checks within the controle/control.php file. By manipulating the redir parameter to point to alterar senha.php, an attacker can route the request through verificarSenhaConfig() instead of verificarSenha(), bypassing password verification and enabling permanent account takeover from temporary session access.
Recommendations Update WeGIA to version 3.9.2 or later. Restrict access to the redir parameter in the password change flow to prevent unauthorized routing.

Exploit

Fix

Missing Authorization

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-76633
GHSA-GFCX-7973-HJMP

Affected Products

Wegia