Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-76766
HistorySep 12, 2023 - 12:00 a.m.

IBM Aspera Faspex Information Disclosure Vulnerability (CNVD-2023-76766)

2023-09-1200:00:00
China National Vulnerability Database
www.cnvd.org.cn
7
ibm aspera
faspex
information disclosure
vulnerability
http strict transfer
security
sensitive information

AI Score

5.9

Confidence

Low

EPSS

0.001

Percentile

45.0%

IBM Aspera is a set of fast file transfer and streaming solutions built on the IBM FASP protocol from International Business Machines (IBM). An information disclosure vulnerability exists in IBM Aspera Faspex, which stems from a failure to properly enable HTTP Strict Transfer security, and can be exploited by an attacker to obtain sensitive information.

AI Score

5.9

Confidence

Low

EPSS

0.001

Percentile

45.0%

Related for CNVD-2023-76766