Online-bookmarks before 0.4.6 allows remote attackers to bypass its authentication mechanism via a direct request to (1) config/*, (2) bookmarks.php, (3) footer.php, (4) main.php, (5) tree.php, or (6) functions.php.
https://exchange.xforce.ibmcloud.com/vulnerabilities/17602
http://www.securityfocus.com/bid/11305
http://secunia.com/advisories/12728/
http://freshmeat.net/projects/onlinebookmarks/?branch_id=34962&release_id=174401