Vulnerabilities > Primekey > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-01-01 CVE-2022-40711 Cross-site Scripting vulnerability in Primekey Ejbca 7.9.0.2
PrimeKey EJBCA 7.9.0.2 Community allows stored XSS in the End Entity section.
network
low complexity
primekey CWE-79
4.8
2022-03-21 CVE-2022-26494 Cross-site Scripting vulnerability in Primekey Signserver
An XSS was identified in the Admin Web interface of PrimeKey SignServer before 5.8.1.
network
low complexity
primekey CWE-79
4.8
2021-08-25 CVE-2021-40088 Missing Authorization vulnerability in Primekey Ejbca
An issue was discovered in PrimeKey EJBCA before 7.6.0.
network
low complexity
primekey CWE-862
5.4
2020-11-19 CVE-2020-28942 Improper Certificate Validation vulnerability in Primekey Ejbca
An issue exists in PrimeKey EJBCA before 7.4.3 when enrolling with EST while proxied through an RA over the Peers protocol.
network
low complexity
primekey CWE-295
4.3
2020-04-08 CVE-2020-11631 Unspecified vulnerability in Primekey Ejbca
An issue was discovered in EJBCA before 6.15.2.6 and 7.x before 7.3.1.2.
network
low complexity
primekey
6.5
2020-04-08 CVE-2020-11628 Incorrect Authorization vulnerability in Primekey Ejbca
An issue was discovered in EJBCA before 6.15.2.6 and 7.x before 7.3.1.2.
network
low complexity
primekey CWE-863
5.3
2020-04-08 CVE-2020-11626 Cross-site Scripting vulnerability in Primekey Ejbca
An issue was discovered in EJBCA before 6.15.2.6 and 7.x before 7.3.1.2.
network
low complexity
primekey CWE-79
6.1