There is a Cross-site Scripting... CVE-2023-25837

- AV AC AU C I A
发布: 2023-07-21
修订: 2024-01-29

There is a Cross-site Scripting vulnerability in Esri ArcGIS Enterprise Sites versions 10.8.1 – 10.9 that may allow a remote, authenticated attacker to create a crafted link which when clicked by a victim could potentially execute arbitrary JavaScript code in the target's browser. The privileges required to execute this attack are high. The impact to Confidentiality, Integrity and Availability are High.

0%
暂无可用Exp或PoC
当前有1条受影响产品信息