VYPR

Mpki

by Verisign

CVEs (2)

  • CVE-2006-1344Mar 22, 2006
    risk 0.03cvss epss 0.01

    Cross-site scripting (XSS) vulnerability in VeriSign haydn.exe, as used in Managed PKI (MPKI) 6.0, allows remote attackers to inject arbitrary web script or HTML via a javascript URI in the VHTML_FILE parameter.

  • CVE-2007-1083Feb 23, 2007
    risk 0.02cvss epss 0.29

    Buffer overflow in the Configuration Checker (ConfigChk) ActiveX control in VSCnfChk.dll 2.0.0.2 for Verisign Managed PKI Service, Secure Messaging for Microsoft Exchange, and Go Secure! allows remote attackers to execute arbitrary code via long arguments to the VerCompare method.