A stored Cross Site Scripting (XSS) vulnerability in Esri Portal for ArcGIS configurable apps may allow a remote, unauthenticated attacker to pass and store malicious strings via crafted queries which when accessed could potentially execute arbitrary JavaScript code in the user’s browser
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: Esri
Published: 2022-06-28T00:00:00
Updated: 2022-08-15T20:45:35
Reserved: 2022-08-12T00:00:00
Link: CVE-2022-38190
JSON object: View
NVD Information
Status : Analyzed
Published: 2022-08-15T21:15:12.320
Modified: 2022-08-16T17:17:00.647
Link: CVE-2022-38190
JSON object: View
Redhat Information
No data.
CWE