Vulnerabilities > CVE-1999-1530 - Unspecified vulnerability in SUN Cobalt RAQ 2 and Cobalt RAQ 3I

047910
CVSS 3.6 - LOW
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
NONE
local
low complexity
sun
nessus

Summary

cgiwrap as used on Cobalt RaQ 2.0 and RaQ 3i does not properly identify the user for running certain scripts, which allows a malicious site administrator to view or modify data located at another virtual site on the same system.

Vulnerable Configurations

Part Description Count
Hardware
Sun
2

Nessus

NASL familyCGI abuses
NASL idCGIWRAP.NASL
descriptionThe remote host has
last seen2020-06-01
modified2020-06-02
plugin id10041
published1999-12-15
reporterThis script is Copyright (C) 1999-2018 Mathieu Perrin
sourcehttps://www.tenable.com/plugins/nessus/10041
titleCobalt RaQ2 cgiwrap Multiple Vulnerabilities