Esri

ArcGIS Server

67 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.25%
  • Veröffentlicht 03.03.2025 20:15:40
  • Zuletzt bearbeitet 10.04.2025 20:15:19

There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 11.3 and below that may allow a remote, authenticated attacker to create a stored crafted link which when clicked could potentially execute arbitrary JavaScript code i...

  • EPSS 0.25%
  • Veröffentlicht 03.03.2025 20:15:40
  • Zuletzt bearbeitet 10.04.2025 20:15:19

There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 11.3 and below that may allow a remote, authenticated attacker to create a stored crafted link which when clicked could potentially execute arbitrary JavaScript code i...

  • EPSS 0.25%
  • Veröffentlicht 03.03.2025 20:15:40
  • Zuletzt bearbeitet 10.04.2025 20:15:19

There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 11.3 and below that may allow a remote, authenticated attacker to create a stored crafted link which when clicked could potentially execute arbitrary JavaScript code i...

  • EPSS 0.25%
  • Veröffentlicht 03.03.2025 20:15:40
  • Zuletzt bearbeitet 10.04.2025 20:15:19

There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 11.3 and below that may allow a remote, authenticated attacker to create a stored crafted link which when clicked could potentially execute arbitrary JavaScript code i...

  • EPSS 0.25%
  • Veröffentlicht 03.03.2025 20:15:39
  • Zuletzt bearbeitet 10.04.2025 20:15:18

There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 11.3 and below that may allow a remote, authenticated attacker to create a stored crafted link which when clicked could potentially execute arbitrary JavaScript code i...

  • EPSS 0.24%
  • Veröffentlicht 25.08.2023 19:15:08
  • Zuletzt bearbeitet 21.11.2024 07:50:18

ArcGIS Enterprise Server versions 11.0 and below have an information disclosure vulnerability where a remote, unauthorized attacker may submit a crafted query that may result in a low severity information disclosure issue. The information disclosed...

  • EPSS 0.52%
  • Veröffentlicht 21.07.2023 19:15:10
  • Zuletzt bearbeitet 10.04.2025 19:15:56

There is a stored Cross-site Scripting vulnerability in Esri ArcGIS Server versions 11.0 and below on Windows and Linux platforms that may allow a remote, unauthenticated attacker to create crafted content which when clicked could potentially execute...

  • EPSS 0.39%
  • Veröffentlicht 21.07.2023 19:15:10
  • Zuletzt bearbeitet 10.04.2025 19:15:56

There is a Cross-site Scripting vulnerability in ArcGIS Server in versions 11.1 and below that may allow a remote, authenticated attacker to create a crafted link which onmouseover wont execute but could potentially render an image in the victims bro...

  • EPSS 1.33%
  • Veröffentlicht 28.12.2022 17:15:10
  • Zuletzt bearbeitet 21.11.2024 07:16:03

There is a path traversal vulnerability in Esri ArcGIS Server versions 10.9.1 and below. Successful exploitation may allow a remote, unauthenticated attacker traverse the file system to access files outside of the intended directory on ArcGIS Server....

  • EPSS 0.52%
  • Veröffentlicht 25.10.2022 17:15:55
  • Zuletzt bearbeitet 21.11.2024 07:16:02

There is a reflected cross site scripting issue in the Esri ArcGIS Server services directory versions 10.9.1 and below that may allow a remote, unauthenticated attacker to convince a user to click on a crafted link which could potentially execute arb...