A remote file inclusion vulnerability in the ArcGIS Server help documentation may allow a remote, unauthenticated attacker to inject attacker supplied html into a page.
References
Configurations
Information
Published : 2021-12-07 11:15
Updated : 2022-02-28 17:15
NVD link : CVE-2021-29113
Mitre link : CVE-2021-29113
JSON object : View
Products Affected
esri
- arcgis_server
CWE
CWE-94
Improper Control of Generation of Code ('Code Injection')
