Multiple uninitialized pointer vulnerabilities when parsing a specially crafted file in Esri ArcGIS Server 10.8.1 (and earlier) allows an authenticated attacker with specialized permissions to achieve arbitrary code execution in the context of the service account.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-15736 | Multiple uninitialized pointer vulnerabilities when parsing a specially crafted file in Esri ArcGIS Server 10.8.1 (and earlier) allows an authenticated attacker with specialized permissions to achieve arbitrary code execution in the context of the service account. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: Esri
Published:
Updated: 2024-09-16T21:02:24.653Z
Reserved: 2021-03-23T00:00:00
Link: CVE-2021-29095
No data.
Status : Modified
Published: 2021-03-25T21:15:13.357
Modified: 2024-11-21T06:00:42.303
Link: CVE-2021-29095
No data.
OpenCVE Enrichment
No data.
EUVD