Vulnerabilities > CVE-2007-0629 - Unspecified vulnerability in Plain Black Webgui 7.3.8

047910
CVSS 6.4 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
plain-black

Summary

The www_purgeList method in Plain Black WebGUI before 7.3.8 does not properly check user permissions, which allows attackers to delete unauthorized assets. NOTE: some of these details are obtained from third party information.

Vulnerable Configurations

Part Description Count
Application
Plain_Black
1