CVE-2000-0234: Medium severity sun cobalt raq 3i vulnerability
The default configuration of Cobalt RaQ2 and RaQ3 as specified in access.conf allows remote attackers to view sensitive contents of a .htaccess file.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Configuration
Modify access.conf to prevent the web server from serving or exposing .htaccess files for Cobalt RaQ2 and RaQ3; explicitly deny HTTP access to files named .htaccess.
Sun Cobalt RaQ (access.conf) HTTP access to .htaccess files = deny
Event History
Frequently Asked Questions
What is the severity of CVE-2000-0234?
CVE-2000-0234 is considered a medium severity vulnerability because it allows unauthorized access to sensitive information.
How do I fix CVE-2000-0234?
To fix CVE-2000-0234, ensure that your access.conf file is properly configured to restrict access to .htaccess files.
What systems are affected by CVE-2000-0234?
CVE-2000-0234 affects the Cobalt RaQ 2 and RaQ 3 web servers.
Can CVE-2000-0234 allow remote code execution?
No, CVE-2000-0234 does not allow remote code execution; it primarily exposes sensitive file information.
Is CVE-2000-0234 easy to exploit?
Yes, CVE-2000-0234 is considered easy to exploit as it involves accessing misconfigured .htaccess files remotely.