CVE-2022-43384
CVSS 3.1 Score 4.6 of 10 (medium)
Details
Published May 30, 2024
CWE ID 79
Summary
CVE-2022-43384 is a cross-site scripting (XSS) vulnerability affecting IBM Aspera Console versions 3.4.0 through 3.4.2 PL5. Malicious JavaScript code can be embedded in the Web UI, enabling attackers to manipulate intended functionality. This issue potentially puts user credentials at risk within trusted sessions. IBM's X-Force has assigned ID 238645 to this vulnerability.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Vendors
- IBM Corporation