A flaw was found in Red Hat 3scale’s API docs URL, where it is accessible without credentials. This flaw allows an attacker to view sensitive information or modify service APIs. Versions before 3scale-2.10.0-ER1 are affected.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published: 2021-05-26T20:54:10

Updated: 2024-08-04T15:40:36.590Z

Reserved: 2020-09-16T00:00:00

Link: CVE-2020-25634

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2021-05-26T21:15:08.070

Modified: 2022-10-21T19:07:57.067

Link: CVE-2020-25634

cve-icon Redhat

Severity : Moderate

Publid Date: 2020-08-26T00:00:00Z

Links: CVE-2020-25634 - Bugzilla