VYPR

RaQ3

by Cobalt

CVEs (3)

  • CVE-2001-1075Jul 4, 2001
    risk 0.03cvss epss 0.04

    poprelayd script before 2.0 in Cobalt RaQ3 servers allows remote attackers to bypass authentication for relaying by causing a "POP login by user" string that includes the attacker's IP address to be injected into the maillog log file.

  • CVE-2000-0234Mar 31, 2000
    risk 0.03cvss epss 0.04

    The default configuration of Cobalt RaQ2 and RaQ3 as specified in access.conf allows remote attackers to view sensitive contents of a .htaccess file.

  • CVE-2000-0431May 22, 2000
    risk 0.00cvss epss 0.00

    Cobalt RaQ2 and RaQ3 does not properly set the access permissions and ownership for files that are uploaded via FrontPage, which allows attackers to bypass cgiwrap and modify files.