A vulnerability has been found in gougucms 4.08.18. This affects the function reg_submit of the file gougucms-master\app\home\controller\Login.php of the component User Registration Handler. Such manipulation of the argument level leads to dynamically-determined object attributes. The attack may be performed from remote. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Metrics
Affected Vendors & Products
References
History
Wed, 01 Apr 2026 02:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability has been found in gougucms 4.08.18. This affects the function reg_submit of the file gougucms-master\app\home\controller\Login.php of the component User Registration Handler. Such manipulation of the argument level leads to dynamically-determined object attributes. The attack may be performed from remote. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way. | |
| Title | gougucms User Registration Login.php reg_submit dynamically-determined object attributes | |
| First Time appeared |
Gougucms
Gougucms gougucms |
|
| Weaknesses | CWE-913 CWE-915 |
|
| CPEs | cpe:2.3:a:gougucms:gougucms:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Gougucms
Gougucms gougucms |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-04-01T00:45:12.460Z
Reserved: 2026-03-31T16:00:46.705Z
Link: CVE-2026-5248
No data.
Status : Received
Published: 2026-04-01T01:16:41.990
Modified: 2026-04-01T01:16:41.990
Link: CVE-2026-5248
No data.
OpenCVE Enrichment
No data.