6.4
CVSSv2

CVE-2020-24590

Published: 21/08/2020 Updated: 27/08/2020
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
CVSS v3 Base Score: 9.1 | Impact Score: 5.2 | Exploitability Score: 3.9
VMScore: 570
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:P

Vulnerability Summary

The Management Console in WSO2 API Manager up to and including 3.1.0 and API Microgateway 2.2.0 allows XML Entity Expansion attacks.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

wso2 api manager

wso2 api microgateway 2.2.0