CVE-2008-0782

MoinMoin 1.5.8 - Unauthenticated Path Traversal and Arbitrary File Write via MOIN_ID Cookie

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2008-0782. PoCs published by nonroot.

AI-analyzed exploit summary This exploit leverages a vulnerability in MoinMoin 1.5.x where the MOIN_ID cookie can be manipulated to overwrite arbitrary files. It creates a new user account and writes the user data to a specified file (README by default).

Description

Directory traversal vulnerability in MoinMoin 1.5.8 and earlier allows remote attackers to overwrite arbitrary files via a .. (dot dot) in the MOIN_ID user ID in a cookie for a userform action. NOTE: this issue can be leveraged for PHP code execution via the quicklinks parameter.

Exploits (1)

exploitdb WORKING POC VERIFIED
by nonroot · pythonwebappsphp
https://www.exploit-db.com/exploits/4957

This exploit leverages a vulnerability in MoinMoin 1.5.x where the MOIN_ID cookie can be manipulated to overwrite arbitrary files. It creates a new user account and writes the user data to a specified file (README by default).

Classification
Working Poc 90%
Attack Type
Auth Bypass
Complexity
Trivial
Reliability
Reliable
Target: MoinMoin 1.5.x
No auth needed
Prerequisites: Network access to the target MoinMoin instance · The target file must be writable by the MoinMoin process
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (13)

Core 13
Core References
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/33755
Third Party Advisory vendor-advisory x_refsource_gentoo
http://www.gentoo.org/security/en/glsa/glsa-200803-27.xml
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/29262
Various Sources x_refsource_confirm
http://hg.moinmo.in/moin/1.5/rev/e69a16b6e630
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/29010
Third Party Advisory mailing-list x_refsource_vim
http://www.attrition.org/pipermail/vim/2008-January/001890.html
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/39837
Exploit, Third Party Advisory exploit x_refsource_exploit-db
https://www.exploit-db.com/exploits/4957
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2008/0569/references
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/29444
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/27404
Vendor Advisory vendor-advisory x_refsource_ubuntu
https://usn.ubuntu.com/716-1/
Third Party Advisory vendor-advisory x_refsource_debian
http://www.debian.org/security/2008/dsa-1514

Scores

EPSS 0.1093
EPSS Percentile 93.6%

Details

CWE
CWE-22
Status published
Products (27)
moinmoin/moinmoin 0.1
moinmoin/moinmoin 0.2
moinmoin/moinmoin 0.3
moinmoin/moinmoin 0.7
moinmoin/moinmoin 0.8
moinmoin/moinmoin 0.9
moinmoin/moinmoin 0.10
moinmoin/moinmoin 0.11
moinmoin/moinmoin 1.0
moinmoin/moinmoin 1.1
... and 17 more
Published Feb 14, 2008
Tracked Since Feb 18, 2026