Colbalt-RAQ-v4.txt...

- AV AC AU C I A
发布: 2002-03-04
修订: 2025-04-13

Cobalt's RAQ 4 server has three remote vulnerabilities. The service.cgi script has a cross site scripting vulnerability because it incorrectly parses the incoming searches and includes HTML tags and Javascript in the result. A directory traversal vulnerability allows attackers to read restricted files or passwords and profiles the users. In addition, a very long URL string will crash the service. Exploits included.

0%
当前有1条漏洞利用/PoC
当前有0条受影响产品信息