Логотип exploitDog
bind:CVE-2021-3814
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-3814

Количество 3

Количество 3

redhat логотип

CVE-2021-3814

больше 4 лет назад

It was found that 3scale's APIdocs does not validate the access token, in the case of invalid token, it uses session auth instead. This conceivably bypasses access controls and permits unauthorized information disclosure.

CVSS3: 6.3
EPSS: Низкий
nvd логотип

CVE-2021-3814

почти 4 года назад

It was found that 3scale's APIdocs does not validate the access token, in the case of invalid token, it uses session auth instead. This conceivably bypasses access controls and permits unauthorized information disclosure.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-46fh-44xx-6xgh

почти 4 года назад

It was found that 3scale's APIdocs does not validate the access token, in the case of invalid token, it uses session auth instead. This conceivably bypasses access controls and permits unauthorized information disclosure.

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2021-3814

It was found that 3scale's APIdocs does not validate the access token, in the case of invalid token, it uses session auth instead. This conceivably bypasses access controls and permits unauthorized information disclosure.

CVSS3: 6.3
0%
Низкий
больше 4 лет назад
nvd логотип
CVE-2021-3814

It was found that 3scale's APIdocs does not validate the access token, in the case of invalid token, it uses session auth instead. This conceivably bypasses access controls and permits unauthorized information disclosure.

CVSS3: 7.5
0%
Низкий
почти 4 года назад
github логотип
GHSA-46fh-44xx-6xgh

It was found that 3scale's APIdocs does not validate the access token, in the case of invalid token, it uses session auth instead. This conceivably bypasses access controls and permits unauthorized information disclosure.

CVSS3: 7.5
0%
Низкий
почти 4 года назад

Уязвимостей на страницу