Description
ArcGIS Server contains an unrestricted file upload vulnerability. An unauthenticated attacker could exploit this issue by uploading a crafted file to the affected endpoint. Successful exploitation could allow arbitrary file upload.
CVSS 5.3EPSS 0.35200000000000004%Risk 0.55
View source- Published
- 2026-07-06 19:17:09
- Affected versions
- unknown
- Type
- Web application
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
- Operating systems
- Windows; Linux