Novo Ws maintains a narrowly scoped product portfolio centered on Orbis CMS, a content management system with a modest but above-typical representation in the tracked vulnerability landscape. The vendor's disclosures are limited in volume and have not surfaced recurring weakness patterns that would characterize its exposure profile; current counts and exploitation status are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Novo Ws over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2010-4313MEDIUM Unrestricted file upload vulnerability in fileman_file_upload.php in Orbis CMS 1.0.2 allows remote authenticated users to execute arbitrary code by uploading a .php file, and then | Dec 2, 2010 | 6.0 | 25 | NO | YES |
CVE-2010-2669MEDIUM Cross-site scripting (XSS) vulnerability in admin/editors/text/editor-body.php in Orbis CMS 1.0.2 allows remote attackers to inject arbitrary web script or HTML via the s parameter | Jul 8, 2010 | 4.3 | 24 | NO | YES |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Novo Ws.
Media articles that mention a CVE ID that affects a product developed by Novo Ws — matched by CVE ID, not by vendor name.