Cross Frame Scripting Vulnerability in ArcGIS Enterprise by Esri
CVE-2019-16193
5.4MEDIUM
What is CVE-2019-16193?
ArcGIS Enterprise version 10.6.1 is susceptible to Cross Frame Scripting (XFS) attacks. This vulnerability is triggered through a specially crafted IFRAME element within the 'EDIT MY PROFILE' feature, allowing attackers to potentially exploit the application and compromise user data. It is crucial for organizations using ArcGIS Enterprise to address this vulnerability to maintain the integrity and security of their operations.