Known Vulnerabilities for Api Gateway by Oracle

Listed below are 10 of the newest known vulnerabilities associated with "Api Gateway" by "Oracle".

These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.

Data on known vulnerable versions is also displayed based on information from known CPEs

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2023-41012 An issue in China Mobile Communications China Mobile Intelligent Home Gateway v.HG6543C4 allows a remote attacker to execute ... Not Provided 2023-09-05 2023-09-05
CVE-2023-41011 Command Execution vulnerability in China Mobile Communications China Mobile Intelligent Home Gateway v.HG6543C4 allows a remo... Not Provided 2023-09-14 2023-09-14
CVE-2023-41010 Insecure Permissions vulnerability in Sichuan Tianyi Kanghe Communication Co., Ltd China Telecom Tianyi Home Gateway v.TEWA-7... Not Provided 2023-09-14 2023-09-14
CVE-2023-40850 netentsec NS-ASG 6.3 is vulnerable to Incorrect Access Control. There is a file leak in the website source code of the applic... Not Provided 2023-09-13 2023-09-13
CVE-2023-40788 SpringBlade <=V3.6.0 is vulnerable to Incorrect Access Control due to incorrect configuration in the default gateway resultin... Not Provided 2023-09-19 2023-09-19
CVE-2023-39416 Proself Enterprise/Standard Edition Ver5.61 and earlier, Proself Gateway Edition Ver1.62 and earlier, and Proself Mail Saniti... Not Provided 2023-08-18 2023-08-18
CVE-2023-39415 Improper authentication vulnerability in Proself Enterprise/Standard Edition Ver5.61 and earlier, Proself Gateway Edition Ver... Not Provided 2023-08-18 2023-08-18
CVE-2023-39290 A vulnerability in the Edge Gateway component of Mitel MiVoice Connect through R19.3 SP3 (22.24.5800.0) could allow an authen... Not Provided 2023-08-25 2023-08-25
CVE-2023-39287 A vulnerability in the Edge Gateway component of Mitel MiVoice Connect through 19.3 SP3 (22.24.5800.0) could allow an authent... Not Provided 2023-08-25 2023-08-25
CVE-2023-39285 A vulnerability in the Edge Gateway component of Mitel MiVoice Connect through 19.3 SP3 (22.24.5800.0) could allow an unauthe... Not Provided 2023-09-14 2023-09-14

Known Affected Configurations (CPE V2.3)

Type Vendor Product Version Update Edition Language
ApplicationOracleApi Gateway11.1.2.4.0AllAllAll
ApplicationOracleApi Gateway11.1.2.3.0AllAllAll

Popular searches for Api Gateway

Learn about Oracle API Gateway

www.oracle.com/cloud-native/api-gateway

Learn about Oracle API Gateway Q O MBuild scalable and secure cloud native applications that provide RESTful APIs

www.oracle.com/cloud/cloud-native/api-gateway www.oracle.com/uk/cloud/cloud-native/api-gateway www.oracle.com/technetwork/middleware/id-mgmt/oeg-300773.html Application programming interface Oracle Corporation Cloud computing Oracle Database Front and back ends Representational state transfer Oracle Cloud Scalability Subroutine Gateway, Inc. Gateway (telecommunications) Serverless computing Server (computing) Application software Build (developer conference) Search algorithm Service-oriented architecture Mobile app development Software Communication endpoint

API Gateway OAuth 2.0 Authentication Flows

docs.oracle.com/cd/E39820_01/doc.11121/gateway_docs/content/oauth_flows.html

. API Gateway OAuth 2.0 Authentication Flows The Gateway N L J can use the OAuth 2.0 protocol for authentication and authorization. The Gateway Auth 2.0 Authorization Server and supports several OAuth 2.0 flows that cover common Web server, JavaScript, device, installed application, and server-to-server scenarios. The Web server redirects the user to the Gateway Authorization Server to authenticate and authorize the server to access data on their behalf. After obtaining the authorization code, the Web server passes back the authorization code to obtain an access token response.

Authorization Application programming interface OAuth Access token Web server Server (computing) Client (computing) Authentication Hypertext Transfer Protocol User (computing) Application software World Wide Web Lexical analysis Parameter (computer programming) Gateway, Inc. Access control URL redirection JavaScript Computer configuration Inter-server

© CVE.report 2023 Twitter Nitter Twitter Viewer |

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

CVE.report and Source URL Uptime Status status.cve.report