CVE Database
/

CVE-2022-2393

Back to search

CVE-2022-2393

Published: Jul 14, 2022

Modified: Aug 3, 2024

PUBLISHED

Description

A flaw was found in pki-core, which could allow a user to get a certificate for another user identity when directory-based authentication is enabled. This flaw allows an authenticated attacker on the adjacent network to impersonate another user within the scope of the domain, but they would not be able to decrypt message content.

VendorProductVersions

n/a

pki-core

affected
pki-core versions 10.12.4 and prior are affected.

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now