Apiman 1.5.7 through 2.2.3.Final has insufficient checks for read permissions within the Apiman Manager REST API. The root cause of the issue is the Apiman project's accidental acceptance of a large contribution that was not fully compatible with the security model of Apiman versions before 3.0.0.Final. Because of this, 3.0.0.Final is not affected by the vulnerability.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2022-12-19T00:00:00
Updated: 2024-08-03T14:55:08.366Z
Reserved: 2022-12-19T00:00:00
Link: CVE-2022-47551
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-12-20T00:15:10.050
Modified: 2024-11-21T07:32:10.633
Link: CVE-2022-47551
Redhat
No data.