Cobalt RaQ2 and RaQ3 does not properly set the access permissions and ownership for files that are uploaded via FrontPage, which allows attackers to bypass cgiwrap and modify files.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Cobalt_raq_2 | Sun | * | * |
Cobalt_raq_3i | Sun | * | * |