There is a Cross-site Scripting... CVE-2023-25836

- AV AC AU C I A
发布: 2023-07-21
修订: 2023-08-07

There is a Cross-site Scripting vulnerability in Esri Portal Sites in versions 10.8.1 – 10.9 that may allow a remote, authenticated attacker to create a crafted link which when clicked could potentially execute arbitrary JavaScript code in the victims browser. The privileges required to execute this attack are low.

0%
暂无可用Exp或PoC
当前有1条受影响产品信息