Vulnerabilities > CVE-2002-0430 - Unspecified vulnerability in SUN Cobalt RAQ 2, Cobalt RAQ 3I and Cobalt RAQ 4

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN
sun
exploit available

Summary

MultiFileUploadHandler.php in the Sun Cobalt RaQ XTR administration interface allows local users to bypass authentication and overwrite arbitrary files via a symlink attack on a temporary file, followed by a request to MultiFileUpload.php.

Vulnerable Configurations

Part Description Count
Hardware
Sun
3

Exploit-Db

  • descriptionCobalt RaQ 2.0/3.0/4.0 XTR MultiFileUpload.php Authentication Bypass Vulnerability. CVE-2002-0430. Remote exploit for php platform
    idEDB-ID:21334
    last seen2016-02-02
    modified2002-03-08
    published2002-03-08
    reporterWouter ter Maat
    sourcehttps://www.exploit-db.com/download/21334/
    titleCobalt RaQ 2.0/3.0/4.0 XTR MultiFileUpload.php Authentication Bypass Vulnerability 1
  • descriptionCobalt RaQ 2.0/3.0/4.0 XTR MultiFileUpload.php Authentication Bypass Vulnerability (2). CVE-2002-0430. Remote exploit for php platform
    idEDB-ID:21335
    last seen2016-02-02
    modified2002-03-08
    published2002-03-08
    reporterWouter ter Maat
    sourcehttps://www.exploit-db.com/download/21335/
    titleCobalt RaQ 2.0/3.0/4.0 XTR MultiFileUpload.php Authentication Bypass Vulnerability 2