Skip to content
Noroxi

openca records

4 published records for vendor openca.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    Recurring classes

    The weakness classes this vendor ships most often: where to look.

    CWE

    Attack profile

    All records

    4 records
    • CVE-2004-0004
      31Monitor

      The libCheckSignature function in crypto-utils.lib for OpenCA 0.9.1.6 and earlier only compares the serial of the signer's certificate and t

      HighCVSS 7.5No exploitEPSS 2%

      openca · opencaFeb 17, 2004

    • CVE-2008-0556
      30Monitor

      Cross-site request forgery (CSRF) vulnerability in OpenCA PKI 0.9.2.5, and possibly earlier versions, allows remote attackers to perform una

      HighCVSS 7.5No exploitEPSS 1%

      openca · openca pkiFeb 18, 2008

    • CVE-2003-0960
      30Monitor

      OpenCA before 0.9.1.4 does not use the correct certificate in a chain to check the serial, which could cause OpenCA to accept revoked or exp

      HighCVSS 7.5No exploitEPSS 1%

      openca · opencaDec 15, 2003

    • CVE-2004-0787
      17Monitor

      Cross-site scripting (XSS) vulnerability in the web frontend in OpenCA 0.9.1-8 and earlier, and 0.9.2 RC6 and earlier, allows remote attacke

      MediumCVSS 4.3No exploitEPSS 1%

      openca · opencaOct 20, 2004