ZeroHour

CVE-2024-56473

CVSS 3.1
5.3 medium
EPSS
<1%p21
Published
()
Modified
Description

IBM Aspera Shares 1.9.0 through 1.10.0 PL6 could allow an attacker to spoof their IP address, which is written to log files, due to improper verification of 'Client-IP' headers.

Vendors
ibm
Products
aspera shares
Weakness
CWE-117, CWE-116
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N

In the news

No ingested article mentions this CVE yet.