Vulnerabilities > CVE-2022-38184 - Unspecified vulnerability in Esri Portal for Arcgis
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
HIGH Integrity impact
NONE Availability impact
NONE Summary
There is an improper access control vulnerability in Portal for ArcGIS versions 10.8.1 and below which could allow a remote, unauthenticated attacker to access an API that may induce Esri Portal for ArcGIS to read arbitrary URLs.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 6 |