3 Vulnerabilities Found in Microsoft Azure API Management Service
Microsoft Azure API Management service now has three additional security holes that could be exploited by bad actors to have access to private data or backend services.
According to Israeli cloud security company Ermetic, this includes two server-side request forgery (SSRF) issues and one instance of unfettered file upload functionality in the API Management developer site.
Security researcher Liv Matan stated in a study shared with The Hacker News that "attackers could send requests from the service's CORS Proxy and the hosting proxy itself, access internal Azure assets, deny service, and bypass web application firewalls by abusing the SSRF vulnerabilities read more 3 Vulnerabilities Found in Microsoft Azure API Management Service.
With ReconBee.com Stay ahead of the latest thre...

