← Back to CVE search

CVE-2026-33518

Esri Portal for ArcGIS

Description

An incorrect privilege assignment vulnerability exists in Esri Portal for ArcGIS 11.5 in Windows and Linux that allows highly privileged users to create developer credentials that may grant more privileges than expected.

CVSS 9.8EPSS 0.295%Risk 1.01
View source
Published
2026-04-21 21:16:29
Affected versions
<11.6
Type
Core software
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Operating systems
Windows; Linux