ZeroHour

CVE-2022-1414

CVSS 3.1
8.8 high
EPSS
<1%p55
Published
()
Modified
Description

3scale API Management 2 does not perform adequate sanitation for user input in multiple fields. An authenticated user could use this flaw to inject scripts and possibly gain access to sensitive information or conduct further attacks.

Vendors
redhat
Products
3scale api management
Weakness
CWE-1173, CWE-20
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.