Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Esri | ArcGIS Enterprise | Portal for ArcGIS ~ 10.9.1 | - |
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2022-38205 | 8.6 HIGH | Portal for ArcGIS has a directory traversal vulnerability (10.9.1, 10.8.1 and 10.7.1 only) |
| CVE-2022-38203 | 7.5 HIGH | The allowedProxyHosts property is not fully honored in ArcGIS Enterprise (10.8.1 and 10.7. |
| CVE-2022-38211 | 7.5 HIGH | Server Side Request Forgery (SSRF) vulnerability in Portal for ArcGIS (10.9.1, 10.8.1 and |
| CVE-2022-38212 | 7.5 HIGH | Server Side Request Forgery (SSRF) vulnerability in Portal for ArcGIS (10.8.1 and 10.7.1 o |
| CVE-2022-38204 | 6.1 MEDIUM | Reflected XSS vulnerability in Portal for ArcGIS (10.8.1 and 10.7.1 only) |
| CVE-2022-38206 | 6.1 MEDIUM | Reflected XSS vulnerability in Portal for ArcGIS (10.9.1, 10.8.1 and 10.7.1 only) |
| CVE-2022-38207 | 6.1 MEDIUM | Reflected XSS vulnerability in Portal for ArcGIS (10.8.1 and 10.7.1 only) |
| CVE-2022-38208 | 6.1 MEDIUM | Unvalidated redirect in Portal for ArcGIS |
| CVE-2022-38209 | 6.1 MEDIUM | Reflected XSS vulnerability in Portal for ArcGIS |
No comments yet