cpe:/a:dootzky:oblog CVE-2009-4907 2010-06-25T15:30:01.547-04:00 2017-08-16T21:31:48.570-04:00 6.8 NETWORK MEDIUM NONE PARTIAL PARTIAL PARTIAL http://nvd.nist.gov 2010-06-28T10:14:00.000-04:00 SECUNIA 37661 OSVDB 60907 MISC http://packetstormsecurity.org/0912-exploits/oblog-xssxsrf.txt XF oblog-unspecified-csrf(54714) Multiple cross-site request forgery (CSRF) vulnerabilities in oBlog allow remote attackers to hijack the authentication of administrators for requests that (1) change the admin password, (2) force an admin logout, (3) change the visibility of posts, (4) remove links, and (5) change the name fields of a blog.