Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2025-03-04 CVE-2025-1890 A vulnerability has been found in shishuocms 1.1 and classified as critical.
network
low complexity
CWE-434
6.3
2025-03-04 CVE-2025-1891 A vulnerability was found in shishuocms 1.1 and classified as problematic.
network
low complexity
CWE-862
4.3
2025-03-03 CVE-2025-1881 A vulnerability was found in i-Drive i11 and i12 up to 20250227.
network
low complexity
CWE-266
4.3
2025-03-03 CVE-2025-1882 A vulnerability was found in i-Drive i11 and i12 up to 20250227.
high complexity
CWE-1262
5.0
2025-03-03 CVE-2024-10904 There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 10.9.1 – 11.3 that may allow a remote, authenticated attacker to create a stored crafted link which when clicked could potentially execute arbitrary JavaScript code in the victim’s browser.
network
low complexity
CWE-79
4.8
2025-03-03 CVE-2024-51942 There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 10.9.1 – 11.3 that may allow a remote, authenticated attacker to create a stored crafted link which when clicked could potentially execute arbitrary JavaScript code in the victim’s browser.
network
low complexity
CWE-79
4.8
2025-03-03 CVE-2024-51944 There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 10.9.1 – 11.3 that may allow a remote, authenticated attacker to create a stored crafted link which when clicked could potentially execute arbitrary JavaScript code in the victim’s browser.
network
low complexity
CWE-79
4.8
2025-03-03 CVE-2024-51945 There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 10.9.1 – 11.3 that may allow a remote, authenticated attacker to create a stored crafted link which when clicked could potentially execute arbitrary JavaScript code in the victim’s browser.
network
low complexity
CWE-79
4.8
2025-03-03 CVE-2024-51946 There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 10.9.1 – 11.3 that may allow a remote, authenticated attacker to create a stored crafted link which when clicked could potentially execute arbitrary JavaScript code in the victim’s browser.
network
low complexity
CWE-79
4.8
2025-03-03 CVE-2024-51947 There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 10.9.1 – 11.3 that may allow a remote, authenticated attacker to create a stored crafted link which when clicked could potentially execute arbitrary JavaScript code in the victim’s browser.
network
low complexity
CWE-79
4.8