CVE-2005-1654

Hosting Controller < 6.1 Hotfix 1.9 - Unauthenticated Arbitrary User Registration via Direct Request

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 2 public exploits for CVE-2005-1654. PoCs published by Silentium, Mouse.

AI-analyzed exploit summary This exploit targets Hosting Controller <= v6.1 by sending a crafted POST request to either the web server or hosting controller daemon to create a new user with specified credentials. It leverages an unauthenticated user registration vulnerability.

Description

Hosting Controller 6.1 Hotfix 1.9 and earlier allows remote attackers to register arbitrary users via a direct request to addsubsite.asp with the loginname and password parameters set.

Exploits (2)

exploitdb WORKING POC VERIFIED
by Silentium · cremotewindows
https://www.exploit-db.com/exploits/987

This exploit targets Hosting Controller <= v6.1 by sending a crafted POST request to either the web server or hosting controller daemon to create a new user with specified credentials. It leverages an unauthenticated user registration vulnerability.

Classification
Working Poc 95%
Attack Type
Auth Bypass
Complexity
Trivial
Reliability
Reliable
Target: Hosting Controller <= v6.1
No auth needed
Prerequisites: Network access to the target host · Target running Hosting Controller <= v6.1
devstral-2 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by Mouse · textremotewindows
https://www.exploit-db.com/exploits/979

This exploit demonstrates an unauthenticated user registration vulnerability in Hosting Controller. It allows an attacker to create a user and host on the target system by sending a crafted POST request to the vulnerable endpoint.

Classification
Working Poc 90%
Attack Type
Auth Bypass
Complexity
Trivial
Reliability
Reliable
Target: Hosting Controller v.6.1 Hotfix 1.9 and earlier
No auth needed
Prerequisites: Network access to the target system
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (2)

Core 2
Core References
Broken Link third-party-advisory x_refsource_secunia
http://secunia.com/advisories/15271
Broken Link, Exploit, Patch x_refsource_misc
http://isun.shabgard.org/hc3.txt

Scores

EPSS 0.0248
EPSS Percentile 82.4%

Details

CWE
CWE-425
Status published
Products (2)
hostingcontroller/hosting_controller 6.1 (11 CPE variants)
hostingcontroller/hosting_controller < 6.1
Published May 18, 2005
Tracked Since Feb 18, 2026