Cobalt RaQ2 and RaQ3 does not properly set the access permissions and ownership for files that are uploaded via FrontPage, which allows attackers to bypass cgiwrap and modify files.
References
Configurations
Configuration 1 (hide)
|
History
20 Nov 2024, 23:32
Type | Values Removed | Values Added |
---|---|---|
References | () http://archives.neohapsis.com/archives/bugtraq/2000-05/0305.html - | |
References | () http://www.osvdb.org/1346 - | |
References | () http://www.securityfocus.com/bid/1238 - Patch, Vendor Advisory | |
References | () http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000523100045.B11049%40HiWAAY.net - |
07 Nov 2023, 01:55
Type | Values Removed | Values Added |
---|---|---|
References |
|
|
Information
Published : 2000-05-22 04:00
Updated : 2024-11-20 23:32
NVD link : CVE-2000-0431
Mitre link : CVE-2000-0431
CVE.ORG link : CVE-2000-0431
JSON object : View
Products Affected
sun
- cobalt_raq_3i
- cobalt_raq_2
CWE