CVE-2022-40711
EUVD-2022-4398101.01.2023, 08:15
PrimeKey EJBCA 7.9.0.2 Community allows stored XSS in the End Entity section. A user with the RA Administrator role can inject an XSS payload to target higher-privilege users.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| primekey | ejbca | 7.9.0.2 |
𝑥
= Vulnerable software versions