CRITICALVulnerability
Verified
Global

NVD CRITICAL: CVE-2026-9181 — ArcGIS Server contains a directory traversal vulnerability. An unauthenticated ...

·Source: NIST NVD

Updated:

Executive Summary

ArcGIS Server contains a directory traversal vulnerability. An unauthenticated attacker could exploit this issue by sending crafted path parameters. Successful exploitation could allow access to sensitive files on the system. This issue impacts all versions of ArcGIS Server 12.0 and prior.

Analysis

ArcGIS Server contains a directory traversal vulnerability. An unauthenticated attacker could exploit this issue by sending crafted path parameters. Successful exploitation could allow access to sensitive files on the system. This issue impacts all versions of ArcGIS Server 12.0 and prior. CVSS Score: 9.8. Published: 2026-07-06T19:17:09.553.

Indicators of Compromise (1)

CVE (1)
CVE-2026-9181
Source Attribution

Originally published by NIST NVD on Jul 6, 2026. Verified by: NIST.

Related Threats