Security Advisory

CVE-2021-29102

9.1
CRITICAL

Vulnerability Description

A Server-Side Request Forgery (SSRF) vulnerability in ArcGIS Server Manager version 10.8.1 and below may allow a remote, unauthenticated attacker to forge GET requests to arbitrary URLs from the system, potentially leading to network enumeration or facilitating other attacks.
Published Date July 11, 2021
Official Source NIST NVD Advisory