Loading HuntDB...

esri

22 Products 91 CVEs

CVE Severity Distribution (All Time)

Critical
2
High
25
Medium
61
Low
3

Timeline Overview

Last 30 Days 0 CVEs
Last 6 Months 0 CVEs
Last Year 12 CVEs

Recent CVEs

View all
CVE-2024-38040 HIGH 11 months ago

There is a local file inclusion vulnerability in Esri Portal for ArcGIS 11.2 and below that may allow a remote, unauthenticated attacker to craft a U…

CVE-2024-38038 MEDIUM 11 months ago

There is a reflected XSS vulnerability in Esri Portal for ArcGIS versions 11.1 which may allow a remote, unauthenticated attacker to create a crafted…

CVE-2024-25691 MEDIUM 11 months ago

There is a reflected XSS vulnerability in Esri Portal for ArcGIS versions 11.1 and below which may allow a remote, unauthenticated attacker to create…

CVE-2024-25694 MEDIUM 11 months ago

There is a stored Cross-site Scripting vulnerability in Esri Portal for ArcGIS Enterprise versions 11.1 and below that may allow a remote, authentica…

CVE-2024-25701 MEDIUM 11 months ago

There is a stored Cross-site Scripting vulnerability in Esri Portal for ArcGIS Enterprise Experience Builder versions 11.1 and below that may allow a…

CVE-2024-25702 MEDIUM 11 months ago

There is a stored Cross-site Scripting vulnerability in Esri Portal for ArcGIS Enterprise Sites versions 11.1 and below that may allow a remote, auth…

CVE-2024-25707 MEDIUM 11 months ago

There is a reflected cross site scripting in Esri Portal for ArcGIS 11.1 and below on Windows and Linux x64 allows a remote authenticated attacker wi…

CVE-2024-38036 MEDIUM 11 months ago

There is a reflected XSS vulnerability in Esri Portal for ArcGIS versions 10.9.1 and below which may allow a remote, unauthenticated attacker to crea…

CVE-2024-8149 MEDIUM 11 months ago

There is a reflected XSS vulnerability in Esri Portal for ArcGIS versions 11.1 and 11.2 which may allow a remote, unauthenticated attacker to create …

CVE-2024-38039 MEDIUM 11 months ago

There is an HTML injection vulnerability in Esri Portal for ArcGIS versions 11.0 and below that may allow a remote, authenticated attacker to create …