CVE-2008-3080: CSRF
Cross-site request forgery (CSRF) vulnerability in admin.php in myWebland myBloggie 2.1.6 allows remote attackers to perform edit actions as administrators. NOTE: this can be leveraged to execute SQL commands by also exploiting CVE-2007-1899.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-3080?
CVE-2008-3080 is classified as a medium severity vulnerability due to its potential to allow unauthorized administrative actions.
How do I fix CVE-2008-3080?
To fix CVE-2008-3080, upgrade myWebland myBloggie to version 2.1.7 or apply patches that mitigate CSRF vulnerabilities.
What type of attack is CVE-2008-3080?
CVE-2008-3080 is a cross-site request forgery (CSRF) vulnerability affecting the admin.php functionality.
Can CVE-2008-3080 lead to SQL injection attacks?
Yes, CVE-2008-3080 can be leveraged alongside CVE-2007-1899 to execute SQL commands on the server.
Who is affected by CVE-2008-3080?
Users of myWebland myBloggie version 2.1.6 are specifically affected by CVE-2008-3080.