The vulnerability exists in the EJBCA service, version 8.0 Enterprise. Not tested in higher versions. By modifying the ‘Host’ header in an HTTP request, it is possible to manipulate the generated links and thus redirect the client to a different base URL. In this way, an attacker could insert his own server for the client to send HTTP requests, provided he succeeds in exploiting it.
References
| Link | Resource |
|---|---|
| https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-ejbca | Third Party Advisory |
Configurations
History
09 Oct 2025, 15:04
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Primekey ejbca
Primekey |
|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.1 |
| CPE | cpe:2.3:a:primekey:ejbca:*:*:*:*:enterprise:*:*:* | |
| Summary |
|
|
| References | () https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-ejbca - Third Party Advisory |
31 Mar 2025, 11:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-03-31 11:15
Updated : 2025-10-09 15:04
NVD link : CVE-2025-3026
Mitre link : CVE-2025-3026
CVE.ORG link : CVE-2025-3026
JSON object : View
Products Affected
primekey
- ejbca
CWE
CWE-74
Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
