Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-87022
HistorySep 27, 2021 - 12:00 a.m.

IBM Aspera Cross-Site Scripting Vulnerability

2021-09-2700:00:00
China National Vulnerability Database
www.cnvd.org.cn
15
ibm aspera
file transfer
streaming
ibm fasp protocol
cross-site scripting
vulnerability
ibm aspera cloud
attacker
arbitrary javascript
web ui
intended functionality
credential disclosure
trusted sessions
cnvd

EPSS

0.001

Percentile

19.5%

IBM Aspera is a set of fast file transfer and streaming solutions built on the IBM FASP protocol from IBM U.S. A cross-site scripting vulnerability exists in IBM Aspera Cloud, which could be exploited by an attacker to embed arbitrary JavaScript code in the Web UI to alter the intended functionality, potentially leading to credential disclosure in trusted sessions.

EPSS

0.001

Percentile

19.5%

Related for CNVD-2021-87022