CVE-2007-3974
admin/ajoutaut.php in JBlog 1.0 does not require authentication, which allows remote attackers to create arbitrary accounts via modified mot and droit parameters.
Date published : 2007-07-25
http://www.securityfocus.com/bid/24991
http://www.securityfocus.com/archive/1/474320/100/0/threaded