PT-2024-11980 · Ibm · Ibm Aspera Faspex

Published

2024-04-19

·

Updated

2024-12-19

·

CVE-2023-22869

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions IBM Aspera Faspex versions 5.0.0 through 5.0.7
Description The issue concerns the storage of potentially sensitive information in log files, which could be accessed by a local user.
Recommendations For IBM Aspera Faspex versions 5.0.0 through 5.0.7, consider restricting access to log files to minimize the risk of sensitive information disclosure until a patch is available.

Fix

Insertion into Log File

Weakness Enumeration

Related Identifiers

CVE-2023-22869

Affected Products

Ibm Aspera Faspex