VYPR

Holacms

by Hola

CVEs (1)

  • CVE-2005-0795Mar 14, 2005
    risk 0.03cvss epss 0.05

    HolaCMS 1.4.9 does not restrict file access to the holaDB/votes directory, which allows remote attackers to overwrite arbitrary files via a modified vote_filename parameter.