Описание
ArcGIS Server contains an improper authentication vulnerability in an undocumented administrative endpoint. An unauthenticated attacker could exploit this issue by sending a crafted request to the endpoint. Successful exploitation may result in disruption of the web-based browsing interface. This issue affects ArcGIS Server 12.0 and earlier.
Уязвимые конфигурации
Конфигурация 1Версия от 11.1 (включая) до 12.0 (включая)
Одновременно
cpe:2.3:a:esri:arcgis_server:*:*:*:*:*:*:*:*
Одно из
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
EPSS
Процентиль: 29%
0.0036
Низкий
5.3 Medium
CVSS3
Дефекты
CWE-287
Связанные уязвимости
CVSS3: 5.3
github
3 месяца назад
ArcGIS Server contains an improper authentication vulnerability in an undocumented administrative endpoint. An unauthenticated attacker could exploit this issue by sending a crafted request to the endpoint. Successful exploitation may result in disruption of the web-based browsing interface. This issue affects ArcGIS Server 12.0 and earlier.
EPSS
Процентиль: 29%
0.0036
Низкий
5.3 Medium
CVSS3
Дефекты
CWE-287