Description
A flaw was found in pki-core 10.9.0. A specially crafted POST request can be used to reflect a DOM-based cross-site scripting (XSS) attack to inject code into the search query form which can get automatically executed. The highest threat from this vulnerability is to data integrity.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-18369 | A flaw was found in pki-core 10.9.0. A specially crafted POST request can be used to reflect a DOM-based cross-site scripting (XSS) attack to inject code into the search query form which can get automatically executed. The highest threat from this vulnerability is to data integrity. |
Ubuntu USN |
USN-7146-1 | Dogtag PKI vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-04T15:40:36.827Z
Reserved: 2020-09-16T00:00:00.000Z
Link: CVE-2020-25715
No data.
Status : Modified
Published: 2021-05-28T11:15:07.640
Modified: 2024-11-21T05:18:33.417
Link: CVE-2020-25715
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Ubuntu USN