Novo-Ws Orbis Cms vulnerabilities
2 known vulnerabilities affecting novo-ws/orbis_cms.
Total CVEs
2
CISA KEV
0
Public exploits
2
Exploited in wild
0
Severity breakdown
MEDIUM2
Vulnerabilities
Page 1 of 1
CVE-2010-4313P3MEDIUMCVSS 6.0PoCv1.0.22010-12-02
CVE-2010-4313 [MEDIUM] CVE-2010-4313: Unrestricted file upload vulnerability in fileman_file_upload.php in Orbis CMS 1.0.2 allows remote a
Unrestricted file upload vulnerability in fileman_file_upload.php in Orbis CMS 1.0.2 allows remote authenticated users to execute arbitrary code by uploading a .php file, and then accessing it via a direct request to the file in uploads/.
nvd
CVE-2010-2669P4MEDIUMCVSS 4.3PoCv1.0.22010-07-08
CVE-2010-2669 [MEDIUM] CWE-79 CVE-2010-2669: Cross-site scripting (XSS) vulnerability in admin/editors/text/editor-body.php in Orbis CMS 1.0.2 al
Cross-site scripting (XSS) vulnerability in admin/editors/text/editor-body.php in Orbis CMS 1.0.2 allows remote attackers to inject arbitrary web script or HTML via the s parameter.
nvd