← Back to CVE List

CVE-2022-38198

Published: 2022-10-25T17:15Z
Last Modified: 2024-11-21T07:16Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
There is a reflected cross site scripting issue in the Esri ArcGIS Server services directory versions 10.9.1 and below that may allow a remote, unauthenticated attacker to convince a user to click on a crafted link which could potentially execute arbitrary JavaScript code in the victim’s browser. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt