We use a FWSM, version 4.0(6) with ASDM, version 6.1(5)F
I need to build a userrole for a user who can just configure existing access-lists in ASDM. I decided to use privilege level 7 for that role.
First I created the ASDM defines user roles (Admin (15), read only (5) & monitor only (3)).
Then I tried to give a level 7 user access to the configuration of access-lists:
privilege cmd level 7 mode configure command configure
privilege cmd level 7 mode configure command access-list
With ASDM I am afraid not, you could do it with CLI and level 7 that you tried to do there. But ASDM will not honor it.
What you could do to hack it is to create a new level 15 user and do command authorization for that user. ASDM will let him do whatever he wants, but when he tries to push the commands the ASA will try to authorize these commands and fail all except for the ACL ones.
I hope it makes sense.