CVE

Id
28929  
CVE No.
CVE-2007-5572  
Status
Candidate  
Description
Multiple cross-site request forgery (CSRF) vulnerabilities in Simple PHP Blog (SPHPBlog) 0.4.9 allow remote attackers to perform delete actions as administrators via (1) the block_id parameter to add_block.php or (2) the link_id parameter to add_link.php.  
Phase
Assigned (20071018)  
Votes
None (candidate not yet proposed)  
Comments