7.5
CVSSv2

CVE-2007-3974

Published: 25/07/2007 Updated: 15/10/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 760
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

admin/ajoutaut.php in JBlog 1.0 does not require authentication, which allows remote malicious users to create arbitrary accounts via modified mot and droit parameters.

Vulnerable Product Search on Vulmon Subscribe to Product

jblog jblog 1.0

Exploits

<!-- ############################################################################## # Script: JBlog version: 10 # # Script Site: wwwjmullernet/jblog # # Vulnerability: Creat Admin exploit, xss, Cookie Manipulation # # Access: Remote ...
################################################## # Script: JBlog ver 10 # Script Site: wwwjmullernet/jblog/indexphp # Vulnerability: Remote SQL injection Exploit # Access: Remote # level ...