CVE-2002-0430: Low severity Sun Cobalt Raq 3i vulnerability
MultiFileUploadHandler.php in the Sun Cobalt RaQ XTR administration interface allows local users to bypass authentication and overwrite arbitrary files via a symlink attack on a temporary file, followed by a request to MultiFileUpload.php.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2002-0430?
CVE-2002-0430 is classified as a high severity vulnerability as it allows local users to bypass authentication and overwrite arbitrary files.
How do I fix CVE-2002-0430?
To mitigate CVE-2002-0430, ensure that access controls are implemented to prevent local users from exploiting symlink attacks.
Which software versions are affected by CVE-2002-0430?
CVE-2002-0430 affects Sun Cobalt RaQ versions 2, 3i, and 4.
What is the impact of CVE-2002-0430?
The impact of CVE-2002-0430 is that it allows unauthorized file access and potential execution of malicious code due to file overwriting.
Can I exploit CVE-2002-0430 remotely?
No, CVE-2002-0430 requires local access to the system to execute the symlink attack.