Cutesite offers a content management system that exhibits a pattern of application-layer input-handling vulnerabilities, primarily centered on cross-site scripting and SQL injection flaws. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Cutesite over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2010-5024MEDIUM SQL injection vulnerability in manage/add_user.php in CuteSITE CMS 1.2.3 and 1.5.0 allows remote authenticated users, with Read privileges, to execute arbitrary SQL commands via th | Nov 2, 2011 | 6.0 | 28 | NO | YES |
CVE-2010-5025MEDIUM Cross-site scripting (XSS) vulnerability in manage/main.php in CuteSITE CMS 1.2.3 and 1.5.0 allows remote attackers to inject arbitrary web script or HTML via the fld_path paramete | Nov 2, 2011 | 4.3 | 23 | NO | YES |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Cutesite.
Media articles that mention a CVE ID that affects a product developed by Cutesite — matched by CVE ID, not by vendor name.