Vulnerabilities > Solidweb

DATE CVE VULNERABILITY TITLE RISK
2007-09-28 CVE-2007-5142 Cross-Site Scripting vulnerability in Solidweb Novus 1.0
Cross-site scripting (XSS) vulnerability in buscar.asp in Solidweb Novus 1.0 allows remote attackers to inject arbitrary web script or HTML via the p parameter.
network
solidweb CWE-79
4.3
2007-09-27 CVE-2007-5123 SQL Injection vulnerability in Solidweb Novus 1.0
SQL injection vulnerability in notas.asp in Novus 1.0 allows remote attackers to execute arbitrary SQL commands via the nota_id parameter.
network
low complexity
solidweb CWE-89
7.5