📦 3scale Api Management

by Redhat

🔍 What is 3scale Api Management?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-10295

HIGH CVSS 7.5 Oct 24, 2024

CVE-2024-10295 is an authentication bypass vulnerability in APICast (Red Hat 3scale API Gateway) where malformed Basic Authentication headers with special characters can bypass authentication checks. ...

CVE-2022-0330

HIGH CVSS 7.8 Mar 25, 2022

A memory access vulnerability in the Linux kernel's i915 GPU driver allows local attackers to execute malicious GPU code, potentially causing system crashes or privilege escalation. This affects Linux...

CVE-2021-3656

HIGH CVSS 8.8 Mar 4, 2022

This vulnerability in KVM's AMD SVM nested virtualization allows a malicious L1 guest to disable security intercepts for L2 guests, potentially enabling L2 guests to read/write host physical memory. T...

CVE-2021-3609

HIGH CVSS 7.0 Mar 3, 2022

CVE-2021-3609 is a race condition vulnerability in the Linux kernel's CAN BCM networking protocol that allows local attackers to corrupt memory and potentially escalate privileges to root. This affect...

CVE-2021-3412

HIGH CVSS 7.3 Jun 1, 2021

CVE-2021-3412 is a brute force vulnerability in all versions of 3Scale developer portal that lacks login attempt protections. Attackers can exploit this to bypass authentication, potentially accessing...

CVE-2019-14852

HIGH CVSS 7.5 Mar 18, 2021

CVE-2019-14852 is a cryptographic vulnerability in 3scale's APIcast gateway that allows TLS 1.0 protocol usage, enabling attackers to potentially decrypt sensitive API traffic. This affects Red Hat 3s...