Unrated severityNVD Advisory· Published Sep 24, 2013· Updated Apr 29, 2026
CVE-2013-5221
CVE-2013-5221
Description
The mobile-upload feature in Esri ArcGIS for Server 10.1 through 10.2 allows remote authenticated users to upload .exe files by leveraging (1) publisher or (2) administrator privileges.
Affected products
2cpe:2.3:a:esri:arcgis_server:10.1:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:esri:arcgis_server:10.1:*:*:*:*:*:*:*
- cpe:2.3:a:esri:arcgis_server:10.2:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- support.esri.com/en/knowledgebase/techarticles/detail/41497nvdPatchVendor Advisory
- support.esri.com/en/downloads/patches-servicepacks/view/productid/66/metaid/2009nvdVendor Advisory
News mentions
0No linked articles in our index yet.