A flaw was found in 3Scale APICast in versions prior to 2.11.0, where it incorrectly identified connections for reuse. This flaw allows an attacker to bypass security restrictions for an API request when hosting multiple APIs on the same IP address.
References
Link | Resource |
---|---|
https://bugzilla.redhat.com/show_bug.cgi?id=1954805 | Issue Tracking Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: redhat
Published: 2022-04-27T20:58:08
Updated: 2022-04-27T20:58:08
Reserved: 2021-04-29T00:00:00
Link: CVE-2021-3523
JSON object: View
NVD Information
Status : Analyzed
Published: 2022-04-27T21:15:08.287
Modified: 2022-05-06T18:49:43.437
Link: CVE-2021-3523
JSON object: View
Redhat Information
No data.
CWE