Goople CMS is a narrowly focused content-management platform whose vulnerability exposure centers on its core product and recurs through application-layer input-handling weaknesses including SQL injection, improper authentication, and inadequate input validation. Treat this as a compact vendor profile rather than a broad trend line; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Goople Cms over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2008-6118HIGH win/content/upload.php in Goople CMS 1.7 allows remote attackers to bypass authentication and gain administrative access by setting the loggedin cookie to 1. | Feb 11, 2009 | 7.5 | 29 | NO | YES |
CVE-2008-6119HIGH Static code injection vulnerability in gooplecms/admin/account/action/editpass.php in Goople CMS 1.7 allows remote attackers to inject arbitrary PHP code into admin/userandpass.php | Feb 11, 2009 | 7.5 | 28 | NO | YES |
CVE-2009-0121HIGH SQL injection vulnerability in frontpage.php in Goople CMS 1.8.2 allows remote attackers to execute arbitrary SQL commands via the password parameter. NOTE: the provenance of this | Jan 15, 2009 | 7.5 | 28 | NO | YES |
CVE-2009-0111HIGH SQL injection vulnerability in frontpage.php in Goople CMS 1.8.2 and earlier allows remote attackers to execute arbitrary SQL commands via the username parameter. | Jan 9, 2009 | 7.5 | 28 | NO | YES |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Goople Cms.
Media articles that mention a CVE ID that affects a product developed by Goople Cms — matched by CVE ID, not by vendor name.