CVE-2019-16193
EUVD-2019-700811.09.2019, 12:15
In ArcGIS Enterprise 10.6.1, a crafted IFRAME element can be used to trigger a Cross Frame Scripting (XFS) attack through the EDIT MY PROFILE feature.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| esri | arcgis_enterprise | 10.6.1 |
𝑥
= Vulnerable software versions