Security Advisory

CVE-2022-38199

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-10-25 16:31:49
Last updated 2025-04-10 14:56:20
Assigner Esri
State PUBLISHED

Description

A remote file download issue can occur in some capabilities of Esri ArcGIS Server web services that may in some edge cases allow a remote, unauthenticated attacker to induce an unsuspecting victim to launch a process in the victims PATH environment. Current browsers provide users with warnings against running unsigned executables downloaded from the internet.