Cobalt RaQ2 and RaQ3 does not properly set the access permissions and ownership for files that are uploaded via FrontPage, which allows attackers to bypass cgiwrap and modify files.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.014
EPSS Ranking 69.2%