Plain Black / Webgui
11 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2015-1564 | Cross-site scripting (XSS) vulnerability in style-underground/search in Plain Black WebGUI 7.10.29 and earlier allows remote attackers to inject arbitrary web… | MEDIUM | 4.3 | Feb 9, 2015 |
| CVE-2009-4877 | Multiple cross-site request forgery (CSRF) vulnerabilities in WebGUI before 7.7.14 allow remote attackers to hijack the authentication of users for unspecified… | MEDIUM | 6.8 | May 26, 2010 |
| CVE-2008-2077 | Unspecified vulnerability in Plain Black WebGUI 7.4.34 has unknown impact and attack vectors related to "data form list view." | HIGH | 10.0 | May 5, 2008 |
| CVE-2007-6487 | Unspecified vulnerability in Plain Black WebGUI 7.4.0 through 7.4.17 allows remote authenticated users with Secondary Admin privileges to create Admin accounts… | MEDIUM | 4.9 | Dec 20, 2007 |
| CVE-2007-2746 | The viewList function in lib/WebGUI/Asset/Wobject/DataForm.pm in Plain Black WebGUI before 7.3.14 does not properly use data structures containing privilege in… | LOW | 3.5 | May 17, 2007 |
| CVE-2007-0629 | The www_purgeList method in Plain Black WebGUI before 7.3.8 does not properly check user permissions, which allows attackers to delete unauthorized assets. NOT… | MEDIUM | 6.4 | Jan 31, 2007 |
| CVE-2007-0407 | Cross-site scripting (XSS) vulnerability in Operation/User.pm in Plain Black WebGUI before 7.3.5 (beta) allows remote attackers to inject arbitrary web script… | MEDIUM | 6.8 | Jan 23, 2007 |
| CVE-2007-0308 | Cross-site scripting (XSS) vulnerability in Plain Black WebGUI before 7.3.4 (beta) allows remote attackers to inject arbitrary web script or HTML via Wiki Page… | MEDIUM | 6.8 | Jan 18, 2007 |
| CVE-2006-0680 | Unspecified vulnerability in WebGUI before 6.8.6-gamma allows remote attackers to create an account, when anonymous registration is disabled, via a certain URL. | MEDIUM | 5.0 | Feb 15, 2006 |
| CVE-2006-0165 | Cross-site scripting (XSS) vulnerability in the DataForm Entries functionality in Plain Black WebGUI before 6.8.4 (gamma) allows remote attackers to inject arb… | MEDIUM | 4.3 | Jan 11, 2006 |
| CVE-2005-2837 | Multiple eval injection vulnerabilities in PlainBlack Software WebGUI before 6.7.3 allow remote attackers to execute arbitrary Perl code via (1) Help.pm, (2) I… | HIGH | 7.5 | Sep 7, 2005 |
Showing 1 to 11 of 11 CVEs