CVE-2025-67711 | Esri ArcGIS Server up to 11.4 on Windows/Linux Configuration cross site scripting (EUVD-2025-206096 / WID-SEC-2025-2833)
A vulnerability was found in Esri ArcGIS Server up to 11.4 on Windows/Linux. It has been rated as problematic. Impacted is an unknown function of the component Configuration Handler. The manipulation leads to cross site scripting.
This vulnerability is documented as CVE-2025-67711. The attack can be initiated remotely. There is not any exploit available.