Open redirect vulnerability in ESRI ArcGIS for Server 10.1.1 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via an unspecified parameter, related to login.Referenceshttp://www.securityfocus.com/bid/69341http://packetstormsecurity.com/files/127959/ArcGIS-For-Server-10.1.1-XSS-Open-Redirect.htmlhttp://www.securityfocus.com/archive/1/533189/100/0/threadedhttp://www.securitytracker.com/id/1030752