CVE-2000-0431

Cobalt RaQ2 and RaQ3 does not properly set the access permissions and ownership for files that are uploaded via FrontPage, which allows attackers to bypass cgiwrap and modify files.
Configurations

Configuration 1 (hide)

OR cpe:2.3:h:sun:cobalt_raq_2:*:*:*:*:*:*:*:*
cpe:2.3:h:sun:cobalt_raq_3i:*:*:*:*:*:*:*:*

History

20 Nov 2024, 23:32

Type Values Removed Values Added
References () http://archives.neohapsis.com/archives/bugtraq/2000-05/0305.html - () http://archives.neohapsis.com/archives/bugtraq/2000-05/0305.html -
References () http://www.osvdb.org/1346 - () http://www.osvdb.org/1346 -
References () http://www.securityfocus.com/bid/1238 - Patch, Vendor Advisory () http://www.securityfocus.com/bid/1238 - Patch, Vendor Advisory
References () http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000523100045.B11049%40HiWAAY.net - () http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000523100045.B11049%40HiWAAY.net -

07 Nov 2023, 01:55

Type Values Removed Values Added
References
  • {'url': 'http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000523100045.B11049@HiWAAY.net', 'name': '20000522 Problem with FrontPage on Cobalt RaQ2/RaQ3', 'tags': [], 'refsource': 'BUGTRAQ'}
  • () http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000523100045.B11049%40HiWAAY.net -

Information

Published : 2000-05-22 04:00

Updated : 2024-11-20 23:32


NVD link : CVE-2000-0431

Mitre link : CVE-2000-0431

CVE.ORG link : CVE-2000-0431


JSON object : View

Products Affected

sun

  • cobalt_raq_3i
  • cobalt_raq_2