CRITICALVulnerability
Verified
Global
NVD CRITICAL: CVE-2026-9181 — ArcGIS Server contains a directory traversal vulnerability. An unauthenticated ...
·Source: NIST NVD
Updated:
Executive Summary
ArcGIS Server contains a directory traversal vulnerability. An unauthenticated attacker could exploit this issue by sending crafted path parameters. Successful exploitation could allow access to sensitive files on the system. This issue impacts all versions of ArcGIS Server 12.0 and prior.
Analysis
ArcGIS Server contains a directory traversal vulnerability. An unauthenticated attacker could exploit this issue by sending crafted path parameters. Successful exploitation could allow access to sensitive files on the system. This issue impacts all versions of ArcGIS Server 12.0 and prior. CVSS Score: 9.8. Published: 2026-07-06T19:17:09.553.