Security Advisory

CVE-2026-17032

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-08-06 17:14:39
Last updated 2026-08-07 14:09:21
Assigner WPScan
CVSS score not scored
State PUBLISHED

Description

Multiple Supsystic Pro plugins were distributed with malicious code through the vendor's compromised update server, allowing unauthenticated attackers to deploy a second-stage payload that exfiltrates credentials and other sensitive data and grants full control of affected sites.