CVE-2024-56473
—CVSS 3.1
5.3 medium
EPSS
<1%p21
Published
()
Modified
Description
IBM Aspera Shares 1.9.0 through 1.10.0 PL6 could allow an attacker to spoof their IP address, which is written to log files, due to improper verification of 'Client-IP' headers.
- Vendors
- ibm
- Products
- aspera shares
- Weakness
- CWE-117, CWE-116
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
In the news0 stories
No ingested article mentions this CVE yet.