Difficult to Exploit Authentication Issue Affects ArcGIS Software
CVE-2024-25699
What is CVE-2024-25699?
The Home application of Esri's Portal for ArcGIS exhibits an improper authentication vulnerability affecting both Windows and Linux platforms. This flaw could be exploited under specific conditions, allowing remote, unauthenticated attackers to potentially compromise the software's confidentiality, integrity, and availability. Affected versions range from 10.8.1 through 11.2 for the Portal on desktop systems and ArcGIS Enterprise 11.1 and earlier on Kubernetes. Organizations using these versions should prioritize the implementation of necessary security updates to mitigate potential threats.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Portal for ArcGIS Windows all
References
CVSS V3.1
Timeline
Vulnerability published
