I have just found a bug in the control panel of RAQ3.
If you disable a domain and then you decide to disable each user one by one 
and enable the domain again, the users are shown disabled but in fact all 
access is permitted. I think that the reason is that it does chmod 755 to all 
users and they are supposed to be kept 000.

Can anyone confirm this?
Thank you.
_______________________________________________
cobalt-security mailing list
[EMAIL PROTECTED]
http://list.cobalt.com/mailman/listinfo/cobalt-security

Reply via email to