Vulnerabilities > Esri > Arcgis Server > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2025-03-03 | CVE-2024-51954 | Unspecified vulnerability in Esri Arcgis Server 10.9.1/11.1 There is an improper access control issue in ArcGIS Server versions 11.3 and below on Windows and Linux, which under unique circumstances, could potentially allow a remote, low privileged authenticated attacker to access secure services published a standalone (Unfederated) ArcGIS Server instance. If successful this compromise would have a high impact on Confidentiality, low impact on integrity and no impact to availability of the software. | 7.1 |
2022-12-28 | CVE-2022-38202 | Path Traversal vulnerability in Esri Arcgis Server There is a path traversal vulnerability in Esri ArcGIS Server versions 10.9.1 and below. | 7.5 |
2022-10-25 | CVE-2022-38196 | Path Traversal vulnerability in Esri Arcgis Server Esri ArcGIS Server versions 10.9.1 and prior have a path traversal vulnerability that may result in a denial of service by allowing a remote, authenticated attacker to overwrite internal ArcGIS Server directory. | 8.1 |