← Back to CVE List

CVE-2022-38197

Published: 2022-10-25T17:15Z
Last Modified: 2024-11-21T07:15Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Esri ArcGIS Server versions 10.9.1 and below have an unvalidated redirect issue that may allow a remote, unauthenticated attacker to phish a user into accessing an attacker controlled website via a crafted query parameter. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt