CVE-2023-25848

CVSS V2 None CVSS V3 None
Description
ArcGIS Enterprise Server versions 11.0 and below have an information disclosure vulnerability where a remote, unauthorized attacker may submit a crafted query that may result in a low severity information disclosure issue. The information disclosed is limited to a single attribute in a database connection string. No business data is disclosed.
Overview
  • CVE ID
  • CVE-2023-25848
  • Assigner
  • Esri
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2023-08-25T18:44:14.016Z
  • Last Modified Date
  • 2023-08-25T18:44:14.016Z
History
Created Old Value New Value Data Type Notes
2024-06-25 17:34:34 Added to TrackCVE