ard has 3 CVEs on record. The median CVSS is 6.3 (medium).
CVEs per month
Last 12 months, by publish date
- Exploited share
- 0% vs 1% corpus
- Median CVSS
- 6.3
- Publish → KEV
- —
- Last 90 days
- 0 prev 0
Worst active — by depth score
CVE-2025-55888High· 7.3Cross-Site Scripting (XSS) vulnerability was discovered in the Ajax transaction manager endpoint of ARD52CVE-2025-55885Medium· 6.3SQL Injection vulnerability in Alpes Recherche et Developpement ARD GEC en Lign before v.2025-04-23 allows a remote attacker to escalate privileges via the GET parameters in index.php47CVE-2025-55887Medium· 6.1Cross-Site Scripting (XSS) vulnerability was discovered in the meal reservation service ARD46
ard vulnerabilities
CVEs affecting ard, newest first. Open any entry for full detail, references, and exploit status.
3 CVEsRSS
CVE-2025-55887Medium· 6.1PoCCross-Site Scripting (XSS) vulnerability was discovered in the meal reservation service ARD
Cross-Site Scripting (XSS) vulnerability was discovered in the meal reservation service ARD. The vulnerability exists in the transactionID GET parameter on the transaction confirmation page. Due to improper input validation and output en…
CVE-2025-55888High· 7.3PoCCross-Site Scripting (XSS) vulnerability was discovered in the Ajax transaction manager endpoint of ARD
Cross-Site Scripting (XSS) vulnerability was discovered in the Ajax transaction manager endpoint of ARD. An attacker can intercept the Ajax response and inject malicious JavaScript into the accountName field. This input is not properly s…
CVE-2025-55885Medium· 6.3PoCSQL Injection vulnerability in Alpes Recherche et Developpement ARD GEC en Lign before v.2025-04-23 allows a remote attacker to escalate privileges via the GET parameters in index.php
SQL Injection vulnerability in Alpes Recherche et Developpement ARD GEC en Lign before v.2025-04-23 allows a remote attacker to escalate privileges via the GET parameters in index.php