Cobalt RaQ2 and RaQ3 does not properly set the access permissions and ownership for files that are uploaded via FrontPage, which allows attackers to bypass cgiwrap and modify files.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Cobalt_raq_2 | Sun | * | * |
| Cobalt_raq_3i | Sun | * | * |