← Back to CVE search

CVE-2026-9182

ArcGIS Server

Description

ArcGIS Server contains an unrestricted file upload vulnerability. An unauthenticated attacker could exploit this issue by uploading a crafted file to the affected endpoint. Successful exploitation could allow arbitrary file upload.

CVSS 5.3EPSS 0.35200000000000004%Risk 0.55
View source
Published
2026-07-06 19:17:09
Affected versions
unknown
Type
Web application
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Operating systems
Windows; Linux