← back
CVE-2007-3974

CVE-2007-3974

23Vexday Risk Score

No sign of exploitation. It has a public proof of concept.

ssvc Attendepss 3.7%
from disclosure to weapon51 days
Published on NVDJul 25
1st PoC+51d
exploitation probability
3.7%top 12% of all CVEs
observed exploitation
nono source reports it
2 public exploit(s)
admin/ajoutaut.php in JBlog 1.0 does not require authentication, which allows remote attackers to create arbitrary accounts via modified mot and droit parameters.
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.