CVE-2005-0796
HolaCMS 1.4.9-1 - Directory Traversal and Arbitrary File Write via Vote Filename Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2005-0796. PoCs published by Virginity Security.
AI-analyzed exploit summary This exploit demonstrates a directory traversal vulnerability in HolaCMS 1.4.9-1 and prior versions, allowing remote attackers to corrupt files on the server by manipulating the 'vote_filename' parameter in a POST request.
Description
Directory traversal vulnerability in HolaCMS 1.4.9-1 allows remote attackers to overwrite arbitrary files via a "holaDB/votes" followed by a .. (dot dot) in the vote_filename parameter, which bypasses the check by HolaCMS to ensure that the file is in the holaDB/votes directory.
Exploits (1)
This exploit demonstrates a directory traversal vulnerability in HolaCMS 1.4.9-1 and prior versions, allowing remote attackers to corrupt files on the server by manipulating the 'vote_filename' parameter in a POST request.