CVE-2021-29095

Multiple uninitialized pointer vulnerabilities when parsing a specially crafted file in Esri ArcGIS Server 10.8.1 (and earlier) allows an authenticated attacker with specialized permissions to achieve arbitrary code execution in the context of the service account.
Configurations

Configuration 1

cpe:2.3:a:esri:arcgis:*:*:*:*:*:*:*:*

Information

Published : 2021-03-25 09:15

Updated : 2021-12-03 06:20


NVD link : CVE-2021-29095

Mitre link : CVE-2021-29095

Products Affected
No products.
CWE
CWE-824

Access of Uninitialized Pointer