EIP-2026-107531
PRE-CVEGuppY CMS 5.0.9 < 5.00.10 - Multiple Cross-Site Request Forgery Vulnerabilities
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-107531. PoCs published by Brandon Murphy.
AI-analyzed exploit summary This exploit demonstrates a CSRF vulnerability in GuppY CMS 5.0.9 & 5.00.10, allowing privilege escalation to Collaborator Admin and unrestricted file upload. It includes functional HTML/JavaScript code to automate the attack when an authenticated admin visits the crafted page.
Description
GuppY CMS 5.0.9 < 5.00.10 - Multiple Cross-Site Request Forgery Vulnerabilities
Exploits (1)
This exploit demonstrates a CSRF vulnerability in GuppY CMS 5.0.9 & 5.00.10, allowing privilege escalation to Collaborator Admin and unrestricted file upload. It includes functional HTML/JavaScript code to automate the attack when an authenticated admin visits the crafted page.