apiman records
2 published records for vendor apiman.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 100%
- Median publish → KEV
- No record has entered KEV
Attack profile
All records
2 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
26Monitor | CVE-2022-47551No exploit | Apiman 1.5.7 through 2.2.3.Final has insufficient checks for read permissions within the Apiman Manager REST API.apiman · apiman · CWE-276 | Medium6.5 | — | 0.6% | Dec 19, 2022 |
12Monitor | CVE-2023-28640No exploit | Permissions bypass in Apiman could enable authenticated attacker to unpermitted API Keyapiman · apiman · CWE-269 | Low3.1 | — | 0.3% | Mar 27, 2023 |
- CVE-2022-4755126Monitor
Apiman 1.5.7 through 2.2.3.Final has insufficient checks for read permissions within the Apiman Manager REST API.
MediumCVSS 6.5No exploitEPSS 1%apiman · apimanDec 19, 2022
- CVE-2023-2864012Monitor
Permissions bypass in Apiman could enable authenticated attacker to unpermitted API Key
LowCVSS 3.1No exploitEPSS 0%apiman · apimanMar 27, 2023