Security
Headlines
HeadlinesLatestCVEs

Tag

#windows

CVE-2023-25838: ArcGIS Insights Security Patches for ArcGIS Insights 2022.1 are now available

There is SQL injection vulnerability in Esri ArcGIS Insights 2022.1 for ArcGIS Enterprise and that may allow a remote, authorized attacker to execute arbitrary SQL commands against the back-end database. The effort required to generate the crafted input required to exploit this issue is complex and requires significant effort before a successful attack can be expected.

CVE
#sql#vulnerability#mac#windows#linux#auth
Aures Booking And POS Terminal Local Privilege Escalation

Aures Booking and POS Terminal suffers from a local privilege escalation vulnerability.

Dooblou WiFi File Explorer 1.13.3 Cross Site Scripting

Dooblou WiFi File Explorer version 1.13.3 suffers from multiple cross site scripting vulnerabilities.

Tiva Events Calender 1.4 Cross Site Scripting

Tiva Events Calender version 1.4 suffers from a persistent cross site scripting vulnerability.

Active Super Shop CMS 2.5 HTML Injection

Active Super Shop CMS version 2.5 suffers from an html injection vulnerability.

Microsoft Office 365 18.2305.1222.0 Remote Code Execution

Microsoft Office 365 version 18.2305.1222.0 suffers from a remote code execution vulnerability when a malicious link is clicked on in a Word file.

Ciuis CRM 1.0.8 Add Administrator

Ciuis CRM version 1.0.8 suffers from an add administrator vulnerability.