Known vulnerabilities in pki-core (Red Hat package)

Software CPE: cpe:2.3:o:red_hat:pki-core_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 4
Public exploits: 2
Known exploited (KEV): 1
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting pki-core (Red Hat package) pki-core (Red Hat package) is affected by 4 known vulnerabilities: 1 high, 1 medium, 2 low Critical High Medium Low

Vulnerabilities (4)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU93288 - Improper Neutralization of Special Elements used in an LDAP Query ('LDAP Injection')
CVE-2023-4727
CWE-90 High
No
No
10.5.18-32.el7_9, 11.0.6-3.el9_0, 11.3.0-2.el9_2, 11.5.0-2.el9_4 25.06.2024 SB2024062568
SB2024062571
SB2024062739
and 12 more
#VU68953 - Improper Restriction of XML External Entity Reference ('XXE')
CVE-2022-2414
CWE-611 Medium
Available
No
10.5.18-24.el7_9, 10.5.18-24.el7pki, 11.0.6-2.el9_0 02.11.2022 SB2022110266
SB2022110269
SB2022110841
and 12 more
#VU68719 - Improper Authentication
CVE-2022-2393
CWE-287 Low
No
No
10.5.18-23.el7_9, 10.5.18-23.el7pki, 11.3.0-1.el9 25.10.2022 SB2022102567
SB2022102569
SB2022102570
and 5 more
#VU27519 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-11023
CWE-79 Low
Available
Exploited
10.5.16-8.el7_7 05.05.2020 SB2020042126
SB2020052033
SB2020052103
and 180 more