OnethirdCVEs & Vulnerabilities
3 CVEs affecting Onethird products, tracked from the National Vulnerability Database, with CVSS/EPSS scores and exploitation status.
3 CVEs→ All vendors
Most Affected Products
onethird cms 2onethird 1
CVE-2020-5640CRITICAL
Local file inclusion vulnerability in OneThird CMS v1.96c and earlier allows a remote unauthenticated attacker to execute arbitrary code or obtain sensitive information via unspecified vectors.
20 Oct 2020
9.8
CVSS
CVE-2017-2124MEDIUM
Cross-site scripting vulnerability in OneThird CMS v1.73 Heaven's Door and earlier allows remote attackers to inject arbitrary web script or HTML via contact.php.
28 Apr 2017
6.1
CVSS
CVE-2017-2123MEDIUM
Cross-site scripting vulnerability in OneThird CMS v1.73 Heaven's Door and earlier allows remote attackers to inject arbitrary web script or HTML via language.php.
28 Apr 2017
6.1
CVSS
← PrevPage 1 / 1Next →