Download
| Alert*
oval:org.secpod.oval:def:505965
The Public Key Infrastructure Core contains fundamental packages required by Red Hat Certificate System. Security Fix: * pki-core: Unprivileged users can renew any certificate * pki-core: XSS in the certificate search results * pki-core: Reflected XSS in "path length" constraint field in CA"s Age ... oval:org.secpod.oval:def:1504778 [10.5.18-12] - Change variable "TPS" to "tps" - ########################################################################## - # RHEL 7.9: - ########################################################################## - Bugzilla Bug 1883639 - Add KRA Transport and Storage Certificates profiles, audit fo ... oval:org.secpod.oval:def:1700607 A Reflected Cross Site Scripting flaw was found in the pki-ca module from the pki-core server due to the CA Agent Service not properly sanitizing the certificate request page. An attacker could inject a specially crafted value that will be executed on the victim"s browser. It was found that the Key ... oval:org.secpod.oval:def:205846 The Public Key Infrastructure Core contains fundamental packages required by Red Hat Certificate System. Security Fix: * pki-core: Unprivileged users can renew any certificate * pki-core: XSS in the certificate search results * pki-core: Reflected XSS in "path length" constraint field in CA"s Age ... oval:org.secpod.oval:def:504689 The Public Key Infrastructure Core contains fundamental packages required by Red Hat Certificate System. Security Fix: * jquery: Cross-site scripting via cross-domain ajax requests * bootstrap: XSS in the data-target attribute * bootstrap: Cross-site Scripting in the collapse data-parent attribu ... oval:org.secpod.oval:def:2500205 The Public Key Infrastructure Core contains fundamental packages required by AlmaLinux Certificate System. |