Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gj57-w9c9-x3x9

Опубликовано: 14 апр. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

IBM Aspera Console 3.4.0 through 3.4.4

is vulnerable to an XPath injection vulnerability, which could allow an authenticated attacker to exfiltrate sensitive application data and/or determine the structure of the XML document.

IBM Aspera Console 3.4.0 through 3.4.4

is vulnerable to an XPath injection vulnerability, which could allow an authenticated attacker to exfiltrate sensitive application data and/or determine the structure of the XML document.

EPSS

Процентиль: 28%
0.00102
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-643

Связанные уязвимости

CVSS3: 4.3
nvd
10 месяцев назад

IBM Aspera Console 3.4.0 through 3.4.4 is vulnerable to an XPath injection vulnerability, which could allow an authenticated attacker to exfiltrate sensitive application data and/or determine the structure of the XML document.

EPSS

Процентиль: 28%
0.00102
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-643