Home
Bugtraq
Full List
Only Bugs
Only Tricks
Only Exploits
Only Dorks
Only CVE
Only CWE
Fake Notes
Ranking
CVEMAP
Full List
Show Vendors
Show Products
CWE Dictionary
Check CVE Id
Check CWE Id
Search
Bugtraq
CVEMAP
By author
CVE Id
CWE Id
By vendors
By products
RSS
Bugtraq
CVEMAP
CVE Products
Bugs
Exploits
Dorks
More
cIFrex
Facebook
Twitter
Donate
About
Submit
Vulnerabilities for
'Api microgateway'
2021-04-05
CVE-2020-17453
CWE-79
WSO2 Management Console through 5.10 allows XSS via the carbon/admin/login.jsp msgId parameter.
2020-08-21
CVE-2020-24590
CWE-776
The Management Console in WSO2 API Manager through 3.1.0 and API Microgateway 2.2.0 allows XML Entity Expansion attacks.
CVE-2020-24589
CWE-776
The Management Console in WSO2 API Manager through 3.1.0 and API Microgateway 2.2.0 allows XML External Entity injection (XXE) attacks.
2020-06-06
CVE-2020-13883
CWE-611
In WSO2 API Manager 3.0.0 and earlier, WSO2 API Microgateway 2.2.0, and WSO2 IS as Key Manager 5.9.0 and earlier, Management Console allows XXE during addition or update of a Lifecycle.
2020-05-08
CVE-2020-12719
CWE-611
XXE during an EventPublisher update can occur in Management Console in WSO2 API Manager 3.0.0 and earlier, API Manager Analytics 2.5.0 and earlier, API Microgateway 2.2.0, Enterprise Integrator 6.4.0 and earlier, IS as Key Manager 5.9.0 and earlier, Identity Server 5.9.0 and earlier, and Identity Server Analytics 5.6.0 and earlier.
>>>
Vendor:
WSO2
25
Products
Application server
Enterprise mobility manager
Storage server
Carbon
Enablement server for java
Identity server
Data analytics server
Iot server
Enterprise integrator
Business rules server
Api manager
Business process server
Dashboard server
Message broker
Data services server
Complex event processor
Governance registry
App manager
Machine learner
Identity server as key manager
Api manager analytics
Api microgateway
Identity server analytics
Api microgatewa
Micro integrator
Copyright
2024
, cxsecurity.com
Back to Top