CVE-2009-4808

Graugon Php Article Publisher - Authentication Bypass

Title source: rule

Description

admin.php in Graugon PHP Article Publisher 1.0 allows remote attackers to bypass authentication and obtain administrative access by setting the g_admin cookie to 1.

Exploits (2)

exploitdb WORKING POC VERIFIED
by ZoRLu · textwebappsphp
https://www.exploit-db.com/exploits/6929
exploitdb WORKING POC VERIFIED
by x0r · textwebappsphp
https://www.exploit-db.com/exploits/8133

Scores

EPSS 0.0179
EPSS Percentile 82.5%

Classification

CWE
CWE-287
Status draft

Affected Products (1)

graugon/php_article_publisher

Timeline

Published Apr 23, 2010
Tracked Since Feb 18, 2026