CVE-2023-25838

CVSS V2 None CVSS V3 None
Description
There is SQL injection vulnerability in Esri ArcGIS Insights 2022.1 for ArcGIS Enterprise and that may allow a remote, authorized attacker to execute arbitrary SQL commands against the back-end database. The effort required to generate the crafted input required to exploit this issue is complex and requires significant effort before a successful attack can be expected.
Overview
  • CVE ID
  • CVE-2023-25838
  • Assigner
  • Esri
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2023-07-19T15:37:14.946Z
  • Last Modified Date
  • 2023-07-19T15:37:23.439Z
History
Created Old Value New Value Data Type Notes
2024-06-25 17:54:03 Added to TrackCVE