Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4hf4-8437-8wg9

Опубликовано: 10 мар. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 5.9

Описание

IBM Aspera Orchestrator 3.0.0 through 4.1.2 stores sensitive information in URL parameters. This may lead to information disclosure if unauthorized parties have access to the URLs via server logs, referrer header or browser history.

IBM Aspera Orchestrator 3.0.0 through 4.1.2 stores sensitive information in URL parameters. This may lead to information disclosure if unauthorized parties have access to the URLs via server logs, referrer header or browser history.

EPSS

Процентиль: 13%
0.00042
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-598

Связанные уязвимости

CVSS3: 5.9
nvd
около 1 месяца назад

IBM Aspera Orchestrator 3.0.0 through 4.1.2 stores sensitive information in URL parameters. This may lead to information disclosure if unauthorized parties have access to the URLs via server logs, referrer header or browser history.

EPSS

Процентиль: 13%
0.00042
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-598