CVE-2014-5122
- EPSS 2.08%
- Veröffentlicht 22.08.2014 14:55:07
- Zuletzt bearbeitet 06.05.2026 22:30:45
Open redirect vulnerability in ESRI ArcGIS for Server 10.1.1 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via an unspecified parameter, related to login.
CVE-2014-5121
- EPSS 2.42%
- Veröffentlicht 22.08.2014 14:55:07
- Zuletzt bearbeitet 06.05.2026 22:30:45
Multiple cross-site scripting (XSS) vulnerabilities in ESRI ArcGIS for Server 10.1.1 allow remote attackers to inject arbitrary web script or HTML via unspecified parameters.
CVE-2013-7232
- EPSS 2.04%
- Veröffentlicht 30.12.2013 04:53:07
- Zuletzt bearbeitet 29.04.2026 01:13:23
SQL injection vulnerability in ESRI ArcGIS for Server through 10.2 allows remote attackers to execute arbitrary SQL commands via unspecified input to the map or feature service.
CVE-2013-7231
- EPSS 1.08%
- Veröffentlicht 30.12.2013 04:53:07
- Zuletzt bearbeitet 29.04.2026 01:13:23
Cross-site scripting (XSS) vulnerability in the Mobile Content Server in ESRI ArcGIS for Server 10.1 and 10.2 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2013-52...
CVE-2013-5222
- EPSS 1.08%
- Veröffentlicht 30.12.2013 04:53:07
- Zuletzt bearbeitet 29.04.2026 01:13:23
Multiple cross-site scripting (XSS) vulnerabilities in ESRI ArcGIS for Server 10.1 allow remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
CVE-2013-5221
- EPSS 1.09%
- Veröffentlicht 24.09.2013 10:35:52
- Zuletzt bearbeitet 29.04.2026 01:13:23
The mobile-upload feature in Esri ArcGIS for Server 10.1 through 10.2 allows remote authenticated users to upload .exe files by leveraging (1) publisher or (2) administrator privileges.
CVE-2012-4949
- EPSS 4.39%
- Veröffentlicht 14.11.2012 12:30:59
- Zuletzt bearbeitet 16.06.2026 23:45:57
SQL injection vulnerability in ESRI ArcGIS 10.1 allows remote authenticated users to execute arbitrary SQL commands via the where parameter to a query URI for a REST service.