CVE Published: 11/07/2021 |
CVE Updated: 16/09/2024 |
CVE Year: 2021 Source: Esri |
Vendor: Esri |
Product: ArcGIS Server Status : PUBLISHED
CVE-2021-29102 Description
A Server-Side Request Forgery (SSRF) vulnerability in ArcGIS Server Manager version 10.8.1 and below may allow a remote, unauthenticated attacker to forge GET requests to arbitrary URLs from the system, potentially leading to network enumeration or facilitating other attacks.