CVE-2022-43384

CVSS 3.1 Score 4.6 of 10 (medium)

Details

Published May 30, 2024
CWE ID 79

Summary

CVE-2022-43384 is a cross-site scripting (XSS) vulnerability affecting IBM Aspera Console versions 3.4.0 through 3.4.2 PL5. Malicious JavaScript code can be embedded in the Web UI, enabling attackers to manipulate intended functionality. This issue potentially puts user credentials at risk within trusted sessions. IBM's X-Force has assigned ID 238645 to this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share