Rejected reason: This submission has been rejected by the CNA of record. Authentication is user configurable as described in our documentation.
https://enterprise.arcgis.com/en/server/latest/administer/windows/configuring-arcgis-server-security.htm
CVSS
No CVSS.
References
No reference.
Configurations
No configuration.
History
27 Jun 2024, 20:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
|
Summary |
|
|
Summary | (en) Rejected reason: This submission has been rejected by the CNA of record. Authentication is user configurable as described in our documentation. https://enterprise.arcgis.com/en/server/latest/administer/windows/configuring-arcgis-server-security.htm |
27 Jun 2024, 17:15
Type | Values Removed | Values Added |
---|---|---|
References | () https://github.com/NSSCYCTFER/SRC-CVE - |
27 Jun 2024, 16:15
Type | Values Removed | Values Added |
---|---|---|
Summary | (en) ArcGIS Enterprise Server 10.8.0 allows a remote attacker to obtain sensitive information because /arcgis/rest/services does not require authentication. NOTE: the supplier disputes the vulnerability information, and also objects to the assignment process (unsupported when assigned from incorrect CNA). |
24 Jun 2024, 12:57
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
21 Jun 2024, 22:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-06-21 22:15
Updated : 2024-06-27 20:15
NVD link : CVE-2024-37694
Mitre link : CVE-2024-37694
CVE.ORG link : CVE-2024-37694
JSON object : View
Products Affected
No product.
CWE
No CWE.