RSS   Vulnerabilities for 'Arcgis enterprise'   RSS

2019-09-11
 
CVE-2019-16193

CWE-79
 

 
In ArcGIS Enterprise 10.6.1, a crafted IFRAME element can be used to trigger a Cross Frame Scripting (XFS) attack through the EDIT MY PROFILE feature.

 

 >>> Vendor: ESRI 8 Products
Arcinfo workstation
Arcgis
Arcpad
Arcmap
Arcgis for server
Arcgis for desktop
Arcgis for engine
Arcgis enterprise


Copyright 2019, cxsecurity.com

 

Back to Top