Vulnerabilities > Keyfactor

DATE CVE VULNERABILITY TITLE RISK
2023-08-03 CVE-2023-34196 Improper Authentication vulnerability in Keyfactor Ejbca
In the Keyfactor EJBCA before 8.0.0, the RA web certificate distribution servlet /ejbca/ra/cert allows partial denial of service due to an authentication issue.
network
low complexity
keyfactor CWE-287
8.2
2022-11-17 CVE-2022-39834 Cross-site Scripting vulnerability in Keyfactor Primekey Ejbca
A stored XSS vulnerability was discovered in adminweb/ra/viewendentity.jsp in PrimeKey EJBCA through 7.9.0.2.
network
low complexity
keyfactor CWE-79
5.4
2022-11-17 CVE-2022-42954 Cross-site Scripting vulnerability in Keyfactor Kefactor Ejbca
Keyfactor EJBCA before 7.10.0 allows XSS.
network
low complexity
keyfactor CWE-79
5.4