add.php in MyBlog 0.9.8 and previous versions allows remote malicious users to bypass authentication and gain administrative access by setting a cookie with admin=yes and login=admin.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
myblog myblog |