Vulnerabilities > CVE-2023-25848 - Unspecified vulnerability in Esri Arcgis Server 10.8.1/10.9.0/10.9.1
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
ArcGIS Enterprise Server versions 11.0 and below have an information disclosure vulnerability where a remote, unauthorized attacker may submit a crafted query that may result in a low severity information disclosure issue. The information disclosed is limited to a single attribute in a database connection string. No business data is disclosed.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 3 |