6.4
CVSSv2

CVE-2009-0383

Published: 02/02/2009 Updated: 14/02/2024
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
VMScore: 645
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:P

Vulnerability Summary

delete.php in Max.Blog 1.0.6 does not properly restrict access, which allows remote malicious users to delete arbitrary blog posts via a direct request.

Vulnerable Product Search on Vulmon Subscribe to Product

mzbservices max.blog 1.0.6

Exploits

<html> <head> <title>MaxBlog 106 Delete Post Exploit</title> </head> <body> <p align="center"> <b>MaxBlog 106 Delete Post Exploit</b><br /><br /> <b>Discovered by <b>SirGod</b><br /> Thanks to <b>Nytro</b><br /> Please visit : <br / ...