Esri Portal For ArcGis是美国Esri公司的一种允许在组织内与其他人共享地图、场景、应用程序和其他地理信息的组件。 Esri Portal for ArcGIS 10.8.1版本存在安全漏洞,该漏洞源于系统属性未正确加密,这可能会导致本地用户从属性文件中读取敏感信息。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Esri | Portal for ArcGIS | 10.8.1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2022-38184 | 7.5 HIGH | There is an improper access control vulnerability in Portal for ArcGIS versions 10.8.1 |
| CVE-2022-38192 | 6.1 MEDIUM | There is a stored cross-site scripting (XSS) vulnerability in ArcGIS API for JavaScript. |
| CVE-2022-38193 | 6.1 MEDIUM | Code injection issue in Portal for ArcGIS (10.7.1 and 10.8.1) |
| CVE-2022-38189 | 5.4 MEDIUM | There is a stored cross-site scripting (XSS) vulnerability in ArcGIS API for JavaScript. |
No comments yet