CVE-2025-67706

Publication date

2025-12-31 22:15:44

Family

Esri

State

PUBLISHED

Description

ArcGIS Server version 11.5 and earlier on Windows and Linux does not properly validate uploaded files file, which allows remote attackers to upload arbitrary files.