A remotely exploitable vulnerability exists in Cobalt RaQ Server Appliances with the Security Hardening Package (SHP) installed.
The Cobalt RaQTM4 is a server appliance that provides a dedicated Web-hosting platform and offers new capabilities for high-traffic, complex Web sites and e-commerce applications.
A remote attacker may be able to execute arbitrary code on a Cobalt RaQ Server Appliance with the SHP installed.
Apply a patch. This patch will remove the SHP from your RaQ.
This vulnerability was publicly reported by
This document was written by Ian A Finlay.