Описание
Changes to user permissions in Portal for ArcGIS 10.9.1 and below are incompletely applied in specific use cases. This issue may allow users to access content that they are no longer privileged to access.
Ссылки
- PatchRelease Notes
- PatchVendor Advisory
- PatchRelease Notes
- PatchVendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия от 10.7.1 (включая) до 10.9.1 (включая)
cpe:2.3:a:esri:portal_for_arcgis:*:*:*:*:*:*:*:*
EPSS
Процентиль: 34%
0.00139
Низкий
5.4 Medium
CVSS3
Дефекты
CWE-269
Связанные уязвимости
CVSS3: 4.6
github
больше 2 лет назад
Changes to user permissions in Portal for ArcGIS 10.9.1 and below are incompletely applied in specific use cases. This issue may allow users to access content that they are no longer privileged to access.
EPSS
Процентиль: 34%
0.00139
Низкий
5.4 Medium
CVSS3
Дефекты
CWE-269