← voltar
CVE-2024-38040

BUG-000167984 - Portal for ArcGIS has a Local file inclusion (LFI) vulnerability

CVSS 7.5 HIGHEPSS 0.5%CWE-73
There is a local file inclusion vulnerability in Esri Portal for ArcGIS 11.2 and below that may allow a remote, unauthenticated attacker to craft a URL that could potentially disclose sensitive configuration information by reading internal files.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Produtos afetados
Esri · Portal for ArcGIS

Quer saber se a sua infraestrutura está exposta a isto?

Falar com a TrueHacking →