CVE-2008-6118

Goople CMS 1.7 - Auth Bypass

Title source: llm

Description

win/content/upload.php in Goople CMS 1.7 allows remote attackers to bypass authentication and gain administrative access by setting the loggedin cookie to 1.

Exploits (2)

exploitdb WORKING POC VERIFIED
by BeyazKurt · textwebappsphp
https://www.exploit-db.com/exploits/7205
exploitdb WRITEUP VERIFIED
by x0r · textwebappsphp
https://www.exploit-db.com/exploits/7210

Scores

EPSS 0.0228
EPSS Percentile 84.5%

Classification

CWE
CWE-287
Status draft

Affected Products (1)

goople_cms/goople_cms

Timeline

Published Feb 11, 2009
Tracked Since Feb 18, 2026