Cobalt RaQ2 and RaQ3 does not properly set the access permissions and ownership for files that are uploaded via FrontPage, which allows attackers to bypass cgiwrap and modify files.
| Software | From | Fixed in |
|---|---|---|
| sun / cobalt_raq_3i | - | - |
| sun / cobalt_raq_2 | - | - |