Field Assessment
AI analysis pending.
CVE
CVE-2008-2524
Severity
MEDIUM
CVSS
5
EPSS
1.29%
Original Filing — NVD Description
BlogPHP 2.0 allows remote attackers to bypass authentication, and post (1) messages or (2) comments as an arbitrary user, via a modified blogphp_username field in a cookie.