CVE

Id
24828  
CVE No.
CVE-2007-1471  
Status
Candidate  
Description
admin/default.asp in Orion-Blog 2.0 allows remote attackers to bypass authentication controls and gain privileges via a direct URL request for admin/AdminBlogNewsEdit.asp.  
Phase
Assigned (20070316)  
Votes
None (candidate not yet proposed)  
Comments