CRLF injection vulnerability in CA API Gateway (formerly Layer7 API Gateway) 7.1 before 7.1.04, 8.0 through 8.3 before 8.3.01, and 8.4 before 8.4.01 allows remote attackers to have an unspecified impact via unknown vectors.
2016-04-06T01:59:28.840
2025-04-12T10:46:40.837
Deferred
CVSSv3.0: 6.5 (MEDIUM)
AV:N/AC:L/Au:N/C:P/I:P/A:N
10.0
4.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | broadcom | api_gateway | 7.1 | Yes |
Application | broadcom | api_gateway | 8.0 | Yes |
Application | broadcom | api_gateway | 8.1 | Yes |
Application | broadcom | api_gateway | 8.2 | Yes |
Application | broadcom | api_gateway | 8.3 | Yes |
Application | broadcom | api_gateway | 8.4 | Yes |