Логотип exploitDog
bind:CVE-2024-51961
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-51961

Количество 3

Количество 3

nvd логотип

CVE-2024-51961

11 месяцев назад

There is a local file inclusion vulnerability in ArcGIS Server 11.3 and below that may allow a remote, unauthenticated attacker to craft a URL that could potentially disclose sensitive configuration information by reading internal files from the remote server.  Due to the nature of the files accessible in this vulnerability the impact to confidentiality is High there is no impact to both integrity or availability.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-cg48-xw7q-cpc8

11 месяцев назад

There is a local file inclusion vulnerability in ArcGIS Server 10.9.1 thru 11.3 that may allow a remote, unauthenticated attacker to craft a URL that could potentially disclose sensitive configuration information by reading internal files from the remote server.  Due to the nature of the files accessible in this vulnerability the impact to confidentiality is High there is no impact to both integrity or availability.

CVSS3: 7.5
EPSS: Низкий
fstec логотип

BDU:2025-02370

12 месяцев назад

Уязвимость сервера ArcGIS Server, связанная с некорректным внешним управлением именем или путем файла, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-51961

There is a local file inclusion vulnerability in ArcGIS Server 11.3 and below that may allow a remote, unauthenticated attacker to craft a URL that could potentially disclose sensitive configuration information by reading internal files from the remote server.  Due to the nature of the files accessible in this vulnerability the impact to confidentiality is High there is no impact to both integrity or availability.

CVSS3: 7.5
0%
Низкий
11 месяцев назад
github логотип
GHSA-cg48-xw7q-cpc8

There is a local file inclusion vulnerability in ArcGIS Server 10.9.1 thru 11.3 that may allow a remote, unauthenticated attacker to craft a URL that could potentially disclose sensitive configuration information by reading internal files from the remote server.  Due to the nature of the files accessible in this vulnerability the impact to confidentiality is High there is no impact to both integrity or availability.

CVSS3: 7.5
0%
Низкий
11 месяцев назад
fstec логотип
BDU:2025-02370

Уязвимость сервера ArcGIS Server, связанная с некорректным внешним управлением именем или путем файла, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 7.5
0%
Низкий
12 месяцев назад

Уязвимостей на страницу