Description
There is a reflected XSS vulnerability in Esri Portal for ArcGIS versions 10.9.1 and below which may allow a remote, unauthenticated attacker to create a crafted link which when clicked could execute arbitrary JavaScript code in the victim’s browser.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-40802 | There is a reflected XSS vulnerability in Esri Portal for ArcGIS versions 10.9.1 and below which may allow a remote, unauthenticated attacker to create a crafted link which when clicked could execute arbitrary JavaScript code in the victim’s browser. |
References
History
Mon, 16 Sep 2024 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Reflected XSS vulnerability in Portal for ArcGIS | Reflected XSS vulnerability in Portal for ArcGIS |
Status: PUBLISHED
Assigner: Esri
Published:
Updated: 2025-04-10T14:53:41.363Z
Reserved: 2022-08-12T00:00:00.000Z
Link: CVE-2022-38209
No data.
Status : Modified
Published: 2022-12-29T20:15:09.917
Modified: 2024-11-21T07:16:04.047
Link: CVE-2022-38209
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD