Required CVE Record Information
Description
RSSFromParent in Plain Black WebGUI before 7.5.13 does not restrict view access to Collaboration System (CS) RSS feeds, which allows remote attackers to obtain sensitive information (CS data).
References 6 Total
- exchange.xforce.ibmcloud.com: webgui-collaboration-info-disclosure(43344) vdb-entry
- http://www.webgui.org/bugs/tracker/security-issue---collaboration-rss/
- http://www.webgui.org/getwebgui/advisories/webgui-7_5_13-beta-released
- securityfocus.com: 29927 vdb-entry
- secunia.com: 30782 third-party-advisory
- vupen.com: ADV-2008-1932 vdb-entry
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 6 Total
- exchange.xforce.ibmcloud.com: webgui-collaboration-info-disclosure(43344) vdb-entryx_transferred
- http://www.webgui.org/bugs/tracker/security-issue---collaboration-rss/ x_transferred
- http://www.webgui.org/getwebgui/advisories/webgui-7_5_13-beta-released x_transferred
- securityfocus.com: 29927 vdb-entryx_transferred
- secunia.com: 30782 third-party-advisoryx_transferred
- vupen.com: ADV-2008-1932 vdb-entryx_transferred