ZeroHour

CVE-2021-29117

CVSS 3.1
7.8 high
EPSS
<1%p37
Published
()
Modified
Description

A use-after-free vulnerability when parsing a specially crafted file in Esri ArcReader 10.8.1 (and earlier) allows an unauthenticated attacker to achieve arbitrary code execution in the context of the current user.

Vendors
esri
Products
arcreader
Weakness
CWE-416
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.