6.5
CVE-2016-3118
- EPSS 1.23%
- Veröffentlicht 06.04.2016 01:59:28
- Zuletzt bearbeitet 06.05.2026 22:30:45
- Erkennungen
CRLF injection vulnerability in CA API Gateway (formerly Layer7 API Gateway) 7.1 before 7.1.04, 8.0 through 8.3 before 8.3.01, and 8.4 before 8.4.01 allows remote attackers to have an unspecified impact via unknown vectors.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Broadcom ≫ Api Gateway Version 7.1
Broadcom ≫ Api Gateway Version 8.0
Broadcom ≫ Api Gateway Version 8.1
Broadcom ≫ Api Gateway Version 8.2
Broadcom ≫ Api Gateway Version 8.3
Broadcom ≫ Api Gateway Version 8.4
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.23% | 0.65 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 6.5 | 3.9 | 2.5 |
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
|
| NIST | 6.4 | 10 | 4.9 |
AV:N/AC:L/Au:N/C:P/I:P/A:N
|
http://www.ca.com/us/support/ca-support-online/product-content/recommended-reading/security-notices/ca20160405-01-security-notice-for-ca-api-gateway.aspx