{
  "url": "https://www.videodioggi.com/cve-2026-09-18.html",
  "title": "CVE del giorno — CVE-2026-27546 (CVSS 9,8, critica)",
  "language": "it",
  "published": "2026-09-18T00:07:48.829Z",
  "modified": "2026-09-18T00:07:48.829Z",
  "summary": "CVE-2026-27546: vulnerabilità critica, CVSS 9,8/10, tipo CWE-288, sfruttabile da remoto, senza privilegi, senza interazione utente. An unauthenticated remote attacker can exploit an authentication bypass in the _account_log function to log in as an admin, even when accounts are properly configured.",
  "keywords": [
    "cve",
    "cve-2026-27546",
    "vulnerabilità",
    "vulnerabilità critica",
    "cwe-288",
    "cvss",
    "sicurezza informatica",
    "cybersecurity",
    "nvd",
    "aggiornamento di sicurezza"
  ],
  "key_facts": [
    "CVE-2026-27546 — CVE-2026-27546: gravità critica, punteggio CVSS 9,8 su 10 secondo il National Vulnerability Database.",
    "CWE-288 — An unauthenticated remote attacker can exploit an authentication bypass in the _account_log function to log in as an admin, even when accounts are properly configured.",
    "Esposizione e mitigazione — Vulnerabilità sfruttabile da remoto, senza privilegi, senza interazione utente. Applica tempestivamente l'aggiornamento del fornitore e consulta l'avviso ufficiale su NVD."
  ],
  "transcript": "CVE-2026-27546: gravità critica, punteggio CVSS 9,8 su 10 secondo il National Vulnerability Database. An unauthenticated remote attacker can exploit an authentication bypass in the _account_log function to log in as an admin, even when accounts are properly configured. Vulnerabilità sfruttabile da remoto, senza privilegi, senza interazione utente. Applica tempestivamente l'aggiornamento del fornitore e consulta l'avviso ufficiale su NVD.",
  "video": {
    "mp4": "https://www.videodioggi.com/videos/cve-2026-09-18.mp4",
    "poster": "https://www.videodioggi.com/videos/cve-2026-09-18.jpg",
    "duration_seconds": 20
  },
  "source": "www.videodioggi.com",
  "generator": "videodioggi procedural video engine"
}