An issue was discovered in EJBCA before 6.15.2.6 and 7.x before 7.3.1.2. Two Cross Side Scripting (XSS) vulnerabilities have been found in the Public Web and the Certificate/CRL download servlets.
References
Link | Resource |
---|---|
https://support.primekey.com/news/primekey-announcements | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2020-04-07T23:34:50
Updated: 2020-04-07T23:34:50
Reserved: 2020-04-07T00:00:00
Link: CVE-2020-11626
JSON object: View
NVD Information
Status : Analyzed
Published: 2020-04-08T00:15:11.253
Modified: 2020-04-08T18:12:12.130
Link: CVE-2020-11626
JSON object: View
Redhat Information
No data.
CWE