Medium severity5.4NVD Advisory· Published Nov 17, 2022· Updated Jun 17, 2026
CVE-2022-39834
CVE-2022-39834
Description
A stored XSS vulnerability was discovered in adminweb/ra/viewendentity.jsp in PrimeKey EJBCA through 7.9.0.2. A low-privilege user can store JavaScript in order to exploit a higher-privilege user.
Affected products
2- PrimeKey/EJBCAdescription
Patches
Vulnerability mechanics
References
1- support.keyfactor.com/s/detail/a6x1Q000000CwCoQAKnvdVendor Advisory
News mentions
0No linked articles in our index yet.