CVE-2025-67705 | Esri ArcGIS Server up to 11.4 on Windows/Linux Configuration cross site scripting (EUVD-2025-206102 / WID-SEC-2025-2833)
A vulnerability was found in Esri ArcGIS Server up to 11.4 on Windows/Linux. It has been classified as problematic. This vulnerability affects unknown code of the component Configuration Handler. Performing manipulation results in cross site scripting.
This vulnerability is cataloged as CVE-2025-67705. It is possible to initiate the attack remotely. There is no exploit available.