CVE-2022-42954: XSS
Published Nov 17, 2022
·Updated
Keyfactor EJBCA before 7.10.0 allows XSS.
Affected Software
1 affected component
Keyfactor Kefactor Ejbca<7.10.0
Event History
Nov 17, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID of this Keyfactor EJBCA vulnerability?
The vulnerability ID of this Keyfactor EJBCA vulnerability is CVE-2022-42954.
2
What is the title of this vulnerability?
The title of this vulnerability is 'Keyfactor EJBCA before 7.10.0 allows XSS.'
3
What is the severity of CVE-2022-42954?
The severity of CVE-2022-42954 is medium with a CVSS score of 5.4.
4
How does CVE-2022-42954 affect Keyfactor EJBCA?
CVE-2022-42954 allows XSS attacks in Keyfactor EJBCA before version 7.10.0.
5
How can I fix CVE-2022-42954 in Keyfactor EJBCA?
To fix CVE-2022-42954, you should update Keyfactor EJBCA to version 7.10.0 or newer.