Vulnerabilities > Graugon

DATE CVE VULNERABILITY TITLE RISK
2010-04-23 CVE-2009-4808 Improper Authentication vulnerability in Graugon PHP Article Publisher 1.0
admin.php in Graugon PHP Article Publisher 1.0 allows remote attackers to bypass authentication and obtain administrative access by setting the g_admin cookie to 1.
network
low complexity
graugon CWE-287
7.5
2010-04-23 CVE-2009-4807 SQL Injection vulnerability in Graugon PHP Article Publisher 1.0
Multiple SQL injection vulnerabilities in Graugon PHP Article Publisher 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) c parameter to index.php and the (2) id parameter to view.php.
network
low complexity
graugon CWE-89
7.5