English
Bug Number BUG-000128058
Submitted Jan 21, 2020
Modified Nov 29, 2020
Severity Medium
Applies To Portal for ArcGIS
Version Found 10.7.1
Prog Language N/A
Server Platform Windows 2016 64 Bit
Client Platform Windows 2016 64 Bit
Database N/A
Locale N/A
Status Implemented
Version Fixed 10.8
SP Fixed N/A

Bug BUG-000128058

Synopsis

Portal for ArcGIS has a Server Side Request Forgery (SSRF) security vulnerability.


Additional Information

N/A


Alternate Solution

The Portal for ArcGIS Security 2020 Update 1 Patch is now live on the support site. The URL is https://support.esri.com/en/download/7777.