ESRI ArcGIS Enterprise等都是美国环境系统研究所(ESRI)公司的产品。ArcGIS Enterprise是一套GIS(地理信息系统)的基础软件系统。Esri Arcgis Server等都是美国Esri(Esri)公司的产品。Esri Arcgis Server是一个面向Web的可用于提供地理位置服务的企业级软件平台。Esri ArcReader是一个应用软件。 Esri 多款产品存在缓冲区错误漏洞,该漏洞允许未经身份验证的攻击者在当前用户的上下文中实现任意代码执行。以下产品及版本受
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Esri | ArcReader | All ~ 10.9.0 | - |
|
| Esri | ArcGIS Desktop | All ~ 10.9.0 | - |
|
| Esri | ArcGIS Engine | All ~ 10.9.0 | - |
|
| Esri | ArcGIS Engine | All ~ 10.9.0 | - |
|
| Esri | ArcGIS Pro | All ~ 4.7.2 | - |
|
| Esri | ArcGIS Desktop Background Geoprocessing | All ~ 10.9 | - |
|
| Esri | ArcGIS Desktop Background Geoprocessing | All ~ 10.9 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2021-29098 | ArcGIS general raster security update: uninitialized pointer | |
| CVE-2021-29095 | ArcGIS Server image service and raster analytics security update: uninitialized pointer | |
| CVE-2021-29094 | ArcGIS Server image service and raster analytics security update: buffer overflow | |
| CVE-2021-29093 | ArcGIS Server image service and raster analytics security update: use-after-free | |
| CVE-2021-29096 | ArcGIS general raster security update: use-after-free |
No comments yet