Security Advisory

CVE-2021-29114

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-12-07 10:51:39
Last updated 2025-04-10 14:59:11
Assigner Esri
State PUBLISHED

Description

A SQL injection vulnerability in feature services provided by Esri ArcGIS Server 10.9 and below allows a remote, unauthenticated attacker to impact the confidentiality, integrity and availability of targeted services via specifically crafted queries.