← Volver a CVEs
CVE-2005-0795
N/ADescripcion
HolaCMS 1.4.9 does not restrict file access to the holaDB/votes directory, which allows remote attackers to overwrite arbitrary files via a modified vote_filename parameter.
Detalles CVE
Puntuacion CVSS v3.1N/A
Publicado3/14/2005
Ultima modificacion4/16/2026
Fuentenvd
Avistamientos honeypot0
Productos afectados
hola:holacms
Referencias
http://secunia.com/advisories/14566(cve@mitre.org)
http://www.holacms.de/?content=changelog(cve@mitre.org)
https://exchange.xforce.ibmcloud.com/vulnerabilities/19672(cve@mitre.org)
http://archives.neohapsis.com/archives/bugtraq/2005-03/0210.html(af854a3a-2127-422b-91ae-364da2661108)
http://secunia.com/advisories/14566(af854a3a-2127-422b-91ae-364da2661108)
http://www.holacms.de/?content=changelog(af854a3a-2127-422b-91ae-364da2661108)
https://exchange.xforce.ibmcloud.com/vulnerabilities/19672(af854a3a-2127-422b-91ae-364da2661108)
Correlaciones IOC
Sin correlaciones registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.