Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wxqh-rqgc-pfr9

Опубликовано: 28 апр. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

A flaw was found in 3Scale APICast in versions prior to 2.11.0, where it incorrectly identified connections for reuse. This flaw allows an attacker to bypass security restrictions for an API request when hosting multiple APIs on the same IP address.

A flaw was found in 3Scale APICast in versions prior to 2.11.0, where it incorrectly identified connections for reuse. This flaw allows an attacker to bypass security restrictions for an API request when hosting multiple APIs on the same IP address.

EPSS

Процентиль: 37%
0.00164
Низкий

7.5 High

CVSS3

Дефекты

CWE-281

Связанные уязвимости

CVSS3: 6.8
redhat
почти 4 года назад

A flaw was found in 3Scale APICast in versions prior to 2.11.0, where it incorrectly identified connections for reuse. This flaw allows an attacker to bypass security restrictions for an API request when hosting multiple APIs on the same IP address.

CVSS3: 7.5
nvd
почти 4 года назад

A flaw was found in 3Scale APICast in versions prior to 2.11.0, where it incorrectly identified connections for reuse. This flaw allows an attacker to bypass security restrictions for an API request when hosting multiple APIs on the same IP address.

EPSS

Процентиль: 37%
0.00164
Низкий

7.5 High

CVSS3

Дефекты

CWE-281