First published: Mon Nov 08 1999(Updated: )
cgiwrap as used on Cobalt RaQ 2.0 and RaQ 3i does not properly identify the user for running certain scripts, which allows a malicious site administrator to view or modify data located at another virtual site on the same system.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Sun Cobalt RaQ | ||
Sun Cobalt RaQ |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-1999-1530 is considered a critical vulnerability as it allows unauthorized access to sensitive data across virtual sites.
To fix CVE-1999-1530, update to a patched version of Cobalt RaQ where this vulnerability is addressed.
CVE-1999-1530 affects Sun Cobalt RaQ 2.0 and RaQ 3i systems.
CVE-1999-1530 enables a site administrator to view or modify data from other virtual sites on the same system.
Yes, CVE-1999-1530 remains relevant as it highlights the risks associated with insecure user identification methods in web applications.