Vulnerabilities > Novo WS

DATE CVE VULNERABILITY TITLE RISK
2010-12-02 CVE-2010-4313 Unspecified vulnerability in Novo-Ws Orbis CMS 1.0.2
Unrestricted file upload vulnerability in fileman_file_upload.php in Orbis CMS 1.0.2 allows remote authenticated users to execute arbitrary code by uploading a .php file, and then accessing it via a direct request to the file in uploads/.
network
novo-ws
6.0
2010-07-08 CVE-2010-2669 Cross-Site Scripting vulnerability in Novo-Ws Orbis CMS 1.0.2
Cross-site scripting (XSS) vulnerability in admin/editors/text/editor-body.php in Orbis CMS 1.0.2 allows remote attackers to inject arbitrary web script or HTML via the s parameter.
network
novo-ws CWE-79
4.3