Security Advisory

CVE-2023-25848

5.3
MEDIUM

Vulnerability Description

ArcGIS Enterprise Server versions 11.0 and below have an information disclosure vulnerability where a remote, unauthorized attacker may submit a crafted query that may result in a low severity information disclosure issue. The information disclosed is limited to a single attribute in a database connection string. No business data is disclosed.
Published Date August 25, 2023
Official Source NIST NVD Advisory