A SQL injection vulnerability in ArcGIS Server allows an EDIT operation to modify Column properties allowing for the execution of a SQL Injection by a remote authenticated user with elevated (non admin) privileges.  There is a high impact to integrity and confidentiality and no impact to availability.

Bleeping Computer


A premier destination for computer users of all skill levels to learn how to use and receive support for their computer.

Highlights

  • The latest news covers a wide range of topics, such as threats, vulnerabilities, and more.
  • The news is updated daily.
Listed: