Total vulnerabilities in the database
The siteUserMod.cgi program in Cobalt RaQ2 servers allows any Site Administrator to modify passwords for other users, site administrators, and possibly admin (root).
Software | From | Fixed in |
---|---|---|
sun / cobalt_raq_3i | - | - |
sun / cobalt_raq_2 | - | - |
sun / cobalt_raq | 1.0 | 1.0.x |