Vulnerabilities > Entrustdatacard

DATE CVE VULNERABILITY TITLE RISK
2020-03-18 CVE-2020-10659 Improper Certificate Validation vulnerability in Entrustdatacard Entelligence Security Provider
Entrust Entelligence Security Provider (ESP) before 10.0.60 on Windows mishandles errors during SSL Certificate Validation, leading to situations where (for example) a user continues to interact with a web site that has an invalid certificate chain.
network
low complexity
entrustdatacard CWE-295
4.0
2018-07-05 CVE-2018-13252 Cross-site Scripting vulnerability in Entrustdatacard Syntera Customization Suite 5.0/5.1
Entrust Datacard Syntera CS 5.x has XSS via the name field of "Domain or Computer Name" in the login page.
4.3