CVE-2022-38201 Information

Description

An unvalidated redirect vulnerability exists in Esri Portal for ArcGIS Quick Capture Web Designer versions 10.8.1 to 10.9.1. A remote unauthenticated attacker can potentially induce an unsuspecting authenticated user to access an an attacker controlled domain.

Reference

https://www.esri.com/arcgis-blog/products/product/uncategorized/portal-for-arcgis-quick-capture-security-patch-is-now-available

Share on: