CVE-2002-0430
LOW 3.7EPSS 0.9%
MultiFileUploadHandler.php in the Sun Cobalt RaQ XTR administration interface allows local users to bypass authentication and overwrite arbitrary files via a symlink attack on a temporary file, followed by a request to MultiFileUpload.php.
- CVSS v2.0
- 3.7 LOW
AV:L/AC:H/Au:N/C:P/I:P/A:P - EPSS
- 0.91% chance of exploitation in the next 30 days, 57th percentile
- Published
- 2002-06-11
- Updated
- 2024-08-08