laptop and a wrench

Bug

Directory traversal vulnerability in ArcGIS Server.

Zuletzt veröffentlicht: September 9, 2022 ArcGIS GIS Server
Bug-ID-Nummer BUG-000152121
EingereichtSeptember 6, 2022
Zuletzt geändertMarch 6, 2023
Gilt fürArcGIS GIS Server
Gefunden in Version10.9.1
Server-PlattformN/A
Client-PlattformN/A
Version Fixed11.1
StatusFixed

Zusätzliche Informationen

This defect is resolved for versions 11.0 and 10.9 in the ArcGIS Server Directory Traversal Vulnerability Patch which is now live on the Esri Support site. The URL is: https://support.esri.com/en/download/8063 This defect is resolved for versions 10.9.1, 10.8.1, and 10.7.1 in the ArcGIS Server Security 2022 Update 2 Patch which is now live on the Esri Support site. The URL is: https://support.esri.com/en/download/8064

Workaround

The ArcGIS Server Directory Traversal Vulnerability Patch is now live on the support site. The URL is:

https://support.esri.com/en/download/8063

Summary

This security patch addresses a security vulnerability found in ArcGIS Server. Esri recommends that all customers using ArcGIS Server 11.0 and 10.9 apply this patch.

Schritte zur Reproduzierung

Bug-ID: BUG-000152121

Software:

  • ArcGIS GIS Server

Hilfe von ArcGIS-Expert*innen erhalten

Technischen Support kontaktieren

Die Esri Support-App herunterladen

Zu den Download-Optionen

Weitere Informationen zu diesem Thema erkunden