7.5
CVSSv2

CVE-2005-4694

Published: 31/12/2005 Updated: 20/07/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Unspecified vulnerability in the www_add method in Asset.pm in Plain Black WebGUI 6.3.0 and other versions prior to 6.7.6 allows malicious users to execute arbitrary code via unknown attack vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

Exploits

source: wwwsecurityfocuscom/bid/15083/info WebGUI is prone to an arbitrary command execution vulnerability This is due to insufficient sanitization of user-supplied data This issue can facilitate unauthorized remote access wwwexamplecom/WebGUI/indexpl/homels?func=add;class=WebGUI::Asset::Wobject::Article%3bprint%20%60id%60 ...