JBrowser allows remote attackers to bypass authentication and access certain administrative capabilities via a direct request for _admin/.Referenceshttp://securitytracker.com/id?1008909http://www.securityfocus.com/archive/1/460923/100/0/threadedhttp://forums.avenir-geopolitique.net/viewtopic.php?t=2693http://www.securityfocus.com/archive/1/461298/100/100/threadedhttp://osvdb.org/33141http://www.securityfocus.com/bid/9537http://securityreason.com/securityalert/2370