Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gvrr-q7f9-rx5j

Опубликовано: 06 фев. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

IBM Aspera Shares 1.9.0 through 1.10.0 PL6 could allow an attacker to spoof their IP address, which is written to log files, due to improper verification of 'Client-IP' headers.

IBM Aspera Shares 1.9.0 through 1.10.0 PL6 could allow an attacker to spoof their IP address, which is written to log files, due to improper verification of 'Client-IP' headers.

EPSS

Процентиль: 33%
0.00132
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-116
CWE-117

Связанные уязвимости

CVSS3: 5.3
nvd
около 1 года назад

IBM Aspera Shares 1.9.0 through 1.10.0 PL6 could allow an attacker to spoof their IP address, which is written to log files, due to improper verification of 'Client-IP' headers.

EPSS

Процентиль: 33%
0.00132
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-116
CWE-117