Vulnerability index

Browse CVEs

11 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Ejbca MEDIUM 6.1
CVE-2025-3026

The vulnerability exists in the EJBCA service, version 8.0 Enterprise. Not tested in higher versions. By modifying the ‘Host’ header in an HTTP reque…

Fix: 9.1+
Fix from $1,600 2025-03-31
Ejbca MEDIUM 6.1
CVE-2025-3027

The vulnerability exists in the EJBCA service, version 8.0 Enterprise. By making a small change to the PATH of the URL associated with the service, t…

Fix: 9.1+
Fix from $1,600 2025-03-31
Ejbca CRITICAL 9.8
CVE-2022-34831

An issue was discovered in Keyfactor PrimeKey EJBCA before 7.9.0, related to possible inconsistencies in DNS identifiers submitted in an ACME order a…

Fix: 7.9.0+
Fix from $2,300 2022-09-14
Ejbca MEDIUM 5.4
CVE-2021-40088

An issue was discovered in PrimeKey EJBCA before 7.6.0. CMP RA Mode can be configured to use a known client certificate to authenticate enrolling cli…

Fix: 7.6.0+
Fix from $1,600 2021-08-25
Ejbca HIGH 7.3
CVE-2020-25276

An issue was discovered in PrimeKey EJBCA 6.x and 7.x before 7.4.1. When using a client certificate to enroll over the EST protocol, no revocation ch…

Fix: 7.4.1+
Fix from $1,950 2020-09-11
Ejbca CRITICAL 9.8
CVE-2020-11630

An issue was discovered in EJBCA before 6.15.2.6 and 7.x before 7.3.1.2. In several sections of code, the verification of serialized objects sent bet…

Fix: 6.15.2.6 / 7.3.1.2+
Fix from $2,300 2020-04-08
Ejbca HIGH 8.8
CVE-2020-11627

An issue was discovered in EJBCA before 6.15.2.6 and 7.x before 7.3.1.2. A Cross Site Request Forgery (CSRF) issue has been found in the CA UI.

Fix: 6.15.2.6 / 7.3.1.2+
Fix from $1,950 2020-04-08
Ejbca HIGH 7.2
CVE-2020-11629

An issue was discovered in EJBCA before 6.15.2.6 and 7.x before 7.3.1.2. The External Command Certificate Validator, which allows administrators to u…

Fix: 6.15.2.6 / 7.3.1.2+
Fix from $1,950 2020-04-08
Ejbca MEDIUM 6.5
CVE-2020-11631

An issue was discovered in EJBCA before 6.15.2.6 and 7.x before 7.3.1.2. An error state can be generated in the CA UI by a malicious user. This, in t…

Fix: 6.15.2.6 / 7.3.1.2+
Fix from $1,600 2020-04-08
Ejbca MEDIUM 6.1
CVE-2020-11626

An issue was discovered in EJBCA before 6.15.2.6 and 7.x before 7.3.1.2. Two Cross Side Scripting (XSS) vulnerabilities have been found in the Public…

Fix: 6.15.2.6 / 7.3.1.2+
Fix from $1,600 2020-04-08
Ejbca MEDIUM 5.3
CVE-2020-11628

An issue was discovered in EJBCA before 6.15.2.6 and 7.x before 7.3.1.2. It is intended to support restriction of available remote protocols (CMP, AC…

Fix: 6.15.2.6 / 7.3.1.2+
Fix from $1,600 2020-04-08