Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-40790 | Esri ArcGIS Server versions 10.9.1 and below have an unvalidated redirect issue that may allow a remote, unauthenticated attacker to phish a user into accessing an attacker controlled website via a crafted query parameter. |
Thu, 10 Apr 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: Esri
Published:
Updated: 2025-04-10T14:55:58.805Z
Reserved: 2022-08-12T00:00:00.000Z
Link: CVE-2022-38197
Updated: 2024-08-03T10:45:52.892Z
Status : Modified
Published: 2022-10-25T17:15:55.367
Modified: 2024-11-21T07:15:58.990
Link: CVE-2022-38197
No data.
OpenCVE Enrichment
No data.
EUVD