PT-2007-7321 · Plain Black · Webgui
Published
2007-12-20
·
Updated
2017-08-08
·
CVE-2007-6487
CVSS v2.0
4.9
Medium
| Vector | AV:N/AC:M/Au:S/C:P/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
WebGUI versions 7.4.0 through 7.4.17
Description
The issue allows remote authenticated users with Secondary Admin privileges to create Admin accounts.
Recommendations
For versions 7.4.0 through 7.4.17, consider restricting access to account creation features for users with Secondary Admin privileges until a fix is available.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Webgui