ArcGIS GeoEvent Server Directory Traversal Vulnerability

ArcGIS GeoEvent Server Directory Traversal Vulnerability

CVE-2021-29101 · HIGH Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

ArcGIS GeoEvent Server versions 10.8.1 and below has a read-only directory path traversal vulnerability that could allow an unauthenticated, remote attacker to perform directory traversal attacks and read arbitrary files on the system.

Learn more about our Cis Benchmark Audit For Server Software.