CVE-2008-6118
- EPSS 2.28%
- Veröffentlicht 11.02.2009 17:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
win/content/upload.php in Goople CMS 1.7 allows remote attackers to bypass authentication and gain administrative access by setting the loggedin cookie to 1.
CVE-2008-6119
- EPSS 1.74%
- Veröffentlicht 11.02.2009 17:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Static code injection vulnerability in gooplecms/admin/account/action/editpass.php in Goople CMS 1.7 allows remote attackers to inject arbitrary PHP code into admin/userandpass.php via the (1) username and (2) password parameters. NOTE: the provenan...
CVE-2009-0121
- EPSS 0.15%
- Veröffentlicht 15.01.2009 00:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
SQL injection vulnerability in frontpage.php in Goople CMS 1.8.2 allows remote attackers to execute arbitrary SQL commands via the password parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third pa...
CVE-2009-0111
- EPSS 0.49%
- Veröffentlicht 09.01.2009 18:30:03
- Zuletzt bearbeitet 09.04.2025 00:30:58
SQL injection vulnerability in frontpage.php in Goople CMS 1.8.2 and earlier allows remote attackers to execute arbitrary SQL commands via the username parameter.