Vulnerabilities (CVE)

Filtered by vendor Iorder Project Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-43441 1 Iorder Project 1 Iorder 2024-11-21 5.0 MEDIUM 5.3 MEDIUM
An HTML Injection Vulnerability in iOrder 1.0 allows the remote attacker to execute Malicious HTML codes via the signup form
CVE-2021-43440 1 Iorder Project 1 Iorder 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
Multiple Stored XSS Vulnerabilities in the Source Code of iOrder 1.0 allow remote attackers to execute arbitrary code via signup form in the Name and Phone number field.