Heap
09-07-08, 21:48
Cross-site request forgery (CSRF) vulnerability in admin.php in myWebland myBloggie 2.1.6 allows remote attackers to perform edit actions as administrators. NOTE: this can be leveraged to execute SQL commands by also exploiting CVE-2007-1899.
More... (http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-3080)
More... (http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-3080)