VYPR
Medium severity5.4NVD Advisory· Published Nov 17, 2022· Updated Jun 17, 2026

CVE-2022-39834

CVE-2022-39834

Description

A stored XSS vulnerability was discovered in adminweb/ra/viewendentity.jsp in PrimeKey EJBCA through 7.9.0.2. A low-privilege user can store JavaScript in order to exploit a higher-privilege user.

Affected products

2

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.