Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2005-0796

Directory traversal vulnerability in HolaCMS 1.4.9-1 allows remote attackers to overwrite arbitrary files via a "holaDB/votes" followed by a .. (dot dot) in the vote_filename parameter, which bypasses the check by HolaCMS to ensure that the file is in the holaDB/votes directory.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.034
EPSS Ranking 86.9%
CVSS Severity
CVSS v2 Score 5.0
Products affected by CVE-2005-0796
  • Hola » Holacms » Version: Any
    cpe:2.3:a:hola:holacms:*
  • Hola » Holacms » Version: 1.4.9_1
    cpe:2.3:a:hola:holacms:1.4.9_1


Contact Us

Shodan ® - All rights reserved