Unspecified vulnerability in Plain Black WebGUI 7.4.0 through 7.4.17 allows remote authenticated users with Secondary Admin privileges to create Admin accounts, a different vulnerability than CVE-2006-0680.
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.
Link | Tags |
---|---|
http://osvdb.org/42632 | vdb entry |
http://www.plainblack.com/bugs/tracker/secondary-admin-can-create-user-with-admin-privilege | |
http://secunia.com/advisories/28059 | third party advisory vendor advisory |
http://www.plainblack.com/getwebgui/advisories/webgui-7_4_18-stable-released/ | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/39041 | vdb entry |