Insufficient Input Sanitization in 3scale API Management 2 Allows for Script Injection and Potential Data Breach

Insufficient Input Sanitization in 3scale API Management 2 Allows for Script Injection and Potential Data Breach

CVE-2022-1414 · HIGH Severity

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

3scale API Management 2 does not perform adequate sanitation for user input in multiple fields. An authenticated user could use this flaw to inject scripts and possibly gain access to sensitive information or conduct further attacks.

Learn more about our Api Penetration Testing.