ZeroHour

CVE-2021-3523

CVSS 3.1
7.5 high
EPSS
<1%p56
Published
()
Modified
Description

A flaw was found in 3Scale APICast in versions prior to 2.11.0, where it incorrectly identified connections for reuse. This flaw allows an attacker to bypass security restrictions for an API request when hosting multiple APIs on the same IP address.

Vendors
redhat
Products
apicast
Weakness
CWE-281
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

In the news

No ingested article mentions this CVE yet.