Skip to content
Noroxi

apiman records

2 published records for vendor apiman.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
100%
Median publish → KEV
No record has entered KEV

Records by year

  1. 22
  2. 23

Bar: total · dark part: CISA KEV.

Recurring classes

The weakness classes this vendor ships most often: where to look.

CWE

Attack profile

    All records

    2 records
    • Apiman 1.5.7 through 2.2.3.Final has insufficient checks for read permissions within the Apiman Manager REST API.

      MediumCVSS 6.5No exploitEPSS 1%

      apiman · apimanDec 19, 2022

    • Permissions bypass in Apiman could enable authenticated attacker to unpermitted API Key

      LowCVSS 3.1No exploitEPSS 0%

      apiman · apimanMar 27, 2023