laptop and a wrench

漏洞

Portal for ArcGIS REST API successfully generates tokens where the maximum expiration time requested is greater than actual expiration.

上次发布: January 8, 2018 Portal for ArcGIS
漏洞 ID 编号 BUG-000106724
已提交July 20, 2017
上次修改时间February 13, 2025
适用范围Portal for ArcGIS
找到的版本10.5.1
操作系统Windows OS
操作系统版本2012 R2
状态Will Not Be Addressed

附加信息

This is an expected behavior. The maximum length of time a token can be generated for is defined with the 'maxTokenExpirationMinutes' under /sharing/rest/portals/self. The maximum value that can be set is 20160 minutes (2 weeks). If a generate token request is made with a value greater than this maximum, the token is created but with an expiration that matches this maximum.

重现步骤

漏洞 ID: BUG-000106724

软件:

  • Portal for ArcGIS

当漏洞状态发生变化时获得通知

下载 Esri 支持应用程序

发现关于本主题的更多内容

获取来自 ArcGIS 专家的帮助

联系技术支持部门

下载 Esri 支持应用程序

转至下载选项