高度な大規模言語モデル技術を使用していますが、出力には不正確または古い情報が含まれる可能性があります。Shenlongはデータの正確性を確保するよう努めていますが、実際の状況に基づいて検証・判断してください。
| ベンダー | プロダクト | 影響を受けるバージョン | CPE | 購読 |
|---|---|---|---|---|
| Esri | ArcGIS Server | all ~ 11.3 | - |
| # | POC説明 | ソースリンク | Shenlongリンク |
|---|
公開POCは見つかりませんでした。
ログインしてAI POCを生成| CVE-2024-51962 | 8.7 HIGH | SQL injection vulnerability in ArcGIS Server |
| CVE-2024-51954 | 8.5 HIGH | Unauthorized access to secure services in ArcGIS Server |
| CVE-2024-51961 | 7.5 HIGH | Local file inclusion (LFI) vulnerability in ArcGIS Server |
| CVE-2024-51966 | 4.9 MEDIUM | Directory traversal vulnerability in ArcGIS Server |
| CVE-2024-51958 | 4.9 MEDIUM | Directory traversal vulnerability in the admin api for service thumbnails |
| CVE-2024-51953 | 4.8 MEDIUM | Stored XSS in ArcGIS Server Rest services |
| CVE-2024-51960 | 4.8 MEDIUM | Stored XSS in ArcGIS Server Administrator Directory |
| CVE-2024-51959 | 4.8 MEDIUM | Stored XSS issue in Server Admin API |
| CVE-2024-51957 | 4.8 MEDIUM | Stored XSS vulnerability in ArcGIS Rest Services Directory |
| CVE-2024-51956 | 4.8 MEDIUM | Stored XSS vulnerability in ArcGIS Server Administrator Directory |
| CVE-2024-51951 | 4.8 MEDIUM | Stored XSS in Server Admin API |
| CVE-2024-5888 | 4.8 MEDIUM | Stored XSS in Rest Services API for a Toolbox published as GP Service |
| CVE-2024-51952 | 4.8 MEDIUM | Stored XSS issue in ArcGIS Server |
| CVE-2024-10904 | 4.8 MEDIUM | Stored XSS in Server Admin API |
| CVE-2024-51948 | 4.8 MEDIUM | Stored XSS vulnerability in Rest Services under Job ID |
| CVE-2024-51946 | 4.8 MEDIUM | Stored XSS in Rest Services Directory under Identify operation |
| CVE-2024-51945 | 4.8 MEDIUM | Stored XSS issues in Server Admin API |
| CVE-2024-51942 | 4.8 MEDIUM | Stored XSS vulnerability in Rest Admin API under Hosted Feature Services page |
| CVE-2024-51949 | 4.8 MEDIUM | Stored XSS vulnerability in Rest Services under OGCFeature Service and Map Service |
| CVE-2024-51947 | 4.8 MEDIUM | Stored XSS vulnerability in Rest Services under Layer name |
Showing 20 of 23 CVEs. View all on vendor page →
まだコメントはありません