CVE-2013-10055

CRITICAL

Havalite CMS 1.1.7 - Unauthenticated RCE

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 2 public exploits for CVE-2013-10055. PoCs published by CWH Underground, CWH, sinn3r, including Metasploit module exploits/unix/webapp/havalite_upload_exec.

AI-analyzed exploit summary This exploit targets an unrestricted file upload vulnerability in Havalite CMS 1.1.7, allowing an attacker to upload a malicious PHP file and execute arbitrary commands via a reverse shell. The PoC demonstrates the vulnerability by uploading a shell and interacting with it.

Description

An unauthenticated arbitrary file upload vulnerability exists in Havalite CMS version 1.1.7 (and possibly earlier) in the upload.php script. The application fails to enforce proper file extension validation and authentication checks, allowing remote attackers to upload malicious PHP files via a crafted multipart/form-data POST request. Once uploaded, the attacker can access the file directly under havalite/tmp/files/, resulting in remote code execution.

Exploits (2)

exploitdb WORKING POC VERIFIED
by CWH Underground · textwebappsphp
https://www.exploit-db.com/exploits/26243

This exploit targets an unrestricted file upload vulnerability in Havalite CMS 1.1.7, allowing an attacker to upload a malicious PHP file and execute arbitrary commands via a reverse shell. The PoC demonstrates the vulnerability by uploading a shell and interacting with it.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Havalite CMS 1.1.7
No auth needed
Prerequisites: Network access to the target · Havalite CMS 1.1.7 installed
devstral-2 · analyzed Feb 16, 2026 Full analysis →
metasploit WORKING POC EXCELLENT
by CWH, sinn3r · rubypocphp
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/unix/webapp/havalite_upload_exec.rb

This Metasploit module exploits an unauthenticated arbitrary file upload vulnerability in Havalite CMS 1.1.7, allowing remote code execution by uploading a malicious PHP file. The exploit leverages the upload feature to bypass restrictions and execute payloads.

Classification
Working Poc 100%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Havalite CMS 1.1.7
No auth needed
Prerequisites: Network access to the target · Havalite CMS 1.1.7 running on the target
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Scores

CVSS v4 9.3
EPSS 0.0135
EPSS Percentile 67.7%
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N

CISA SSVC

Vulnrichment
Exploitation poc
Automatable yes
Technical Impact total

Details

CWE
CWE-434
Status published
Products (1)
Havalite CMS/Havalite CMS 1.1.7
Published Aug 01, 2025
Tracked Since Feb 18, 2026