VYPR
Medium severity4.7NVD Advisory· Published Dec 7, 2021· Updated Jun 17, 2026

CVE-2021-29113

CVE-2021-29113

Description

A remote file inclusion vulnerability in the ArcGIS Server help documentation may allow a remote, unauthenticated attacker to inject attacker supplied html into a page.

Affected products

3
  • Esri/Arcgis Servercpe-rescue3 versions
    10.9+ 2 more
    • (no CPE)range: 10.9
    • (no CPE)
    • cpe:2.3:a:esri:arcgis_server:*:*:*:*:*:*:x64:*range: <=10.9.0

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.