← volver
CVE-2022-38200

BUG-000142376 - Reflected Cross-Site Scripting (XSS) vulnerability in ArcGIS Server.

CVSS 6.1 MEDIUMEPSS 0.3%CWE-79
A cross site scripting vulnerability exists in some map service configurations of ArcGIS Server versions 10.8.1 and 10.7.1. Specifically crafted web requests can execute arbitrary JavaScript in the context of the victim's browser.
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Productos afectados
Esri · ArcGIS Server

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →