A vulnerability classified as problematic was found in Esri Portal for ArcGIS up to 10.8.1/10.9.1/11.1/11.2. This vulnerability affects unknown code of the component File Handler. The manipulation leads to file inclusion.

This vulnerability was named CVE-2024-38040. The attack can be initiated remotely. There is no exploit available.