An issue exists in EJBCA prior to 6.15.2.6 and 7.x prior to 7.3.1.2. In several sections of code, the verification of serialized objects sent between nodes (connected via the Peers protocol) allows insecure objects to be deserialized.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
primekey ejbca |